codex-first
Warn
Audited by Socket on Jul 23, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is purpose-aligned and uses official Codex distribution paths, so it is not malware, but it materially expands execution authority by instructing the agent to use `--yolo`, bypass sandbox/approvals on resume, and let Codex perform impactful git and merge operations. The main risk is autonomy and weakened safeguards, not deceptive provenance or credential theft.
Confidence: 88%Severity: 74%
Audit Metadata