gh-attach
Warn
Audited by Socket on Sep 1, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s purpose is coherent, and data flows appear to go to GitHub rather than an exfiltration service, but it requires installing third-party executable code from a personal repo and giving that code access to browser-based GitHub session context tied to a full-account credential. Pinning and manual-interactive safeguards improve trust, yet the combination of third-party code plus high-value credential access makes this a high security-risk skill even without clear malicious intent.
Confidence: 87%Severity: 81%
Audit Metadata