maintainer-orchestrator

Warn

Audited by Socket on Jun 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is broadly aligned with maintainer orchestration and uses mostly coherent GitHub/1Password flows, but it has a large operational footprint, can trigger public mutations/releases, and relies on helper tooling with incomplete provenance. Not clearly malicious, but higher-trust-than-normal and medium risk.

Confidence: 84%Severity: 61%
Audit Metadata
Analyzed At
Jun 29, 2026, 06:10 AM
Package URL
pkg:socket/skills-sh/steipete%2Fagent-scripts%2Fmaintainer-orchestrator%2F@2c309d2c6d23e99a74872395d8adb0012e4c3a75fc7eb51e159035d1cba6730c
Security Audit — socket — maintainer-orchestrator