iterate-pr
Warn
Audited by Socket on Aug 25, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s purpose matches its GitHub/CI capabilities and official tool usage, so it is not overtly malicious, but it grants an agent high-impact autonomy: reading untrusted PR content, changing code, pushing commits, and posting replies in a loop. Main risk is autonomous external action plus indirect prompt-injection from PR feedback/logs, not credential theft or deceptive data routing.
Confidence: 90%Severity: 76%
Audit Metadata