codex-first

Warn

Audited by Socket on Jul 23, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is purpose-aligned and uses official Codex distribution paths, so it is not malware, but it materially expands execution authority by instructing the agent to use `--yolo`, bypass sandbox/approvals on resume, and let Codex perform impactful git and merge operations. The main risk is autonomy and weakened safeguards, not deceptive provenance or credential theft.

Confidence: 88%Severity: 74%
Audit Metadata
Analyzed At
Jul 23, 2026, 06:45 PM
Package URL
pkg:socket/skills-sh/steipete%2Fagent-scripts%2Fcodex-first%2F@18e3f979d0fc1746a98a496f69678355cf71ad03b1639086c495605f7dfb5621
Security Audit — socket — codex-first