github-automation
Warn
Audited by Socket on Jul 31, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's GitHub-focused capabilities match its stated purpose, and its policy-guard language is coherent. The main concern is data-flow integrity and scope: GitHub OAuth and repository actions are routed through Composio/Rube as a third-party intermediary, and the skill authorizes high-impact operations such as merges, deployments, permissions, and protection changes. This is not confirmed malware, but it carries meaningful security risk due to third-party credential handling and powerful repository control.
Confidence: 86%Severity: 68%
Audit Metadata