autopilot

Warn

Audited by Socket on Aug 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is coherent as an autonomous workflow, but its actual footprint is still risky because it enables unattended write/exec behavior, repeated local commits, and exposure to indirect prompt injection from repo content. No clear credential theft or malicious exfiltration appears, but the autonomy level is high enough to warrant caution.

Confidence: 88%Severity: 76%
Audit Metadata
Analyzed At
Aug 25, 2026, 08:50 AM
Package URL
pkg:socket/skills-sh/saschb2b%2Fskills%2Fautopilot%2F@aa3f32a891da1fc95aed8a877632359bf515f37ab2ac36c155d0379a912ab53b
Security Audit — socket — autopilot