request-review

Warn

Audited by Socket on Mar 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is plausible for a review workflow, but the skill's actual footprint depends on executing unseen local scripts and another skill with no provenance or content available here. There is no direct evidence of credential theft or exfiltration in the excerpt, but the unverifiable executable trust chain makes the overall security risk high.

Confidence: 82%Severity: 78%
Audit Metadata
Analyzed At
Mar 27, 2026, 07:50 AM
Package URL
pkg:socket/skills-sh/robertmsale%2F.codex%2Frequest-review%2F@d83e8213ca530648ece9a235ee5bdf8e420780f4