tailrocks-prove
Warn
Audited by Socket on Sep 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose is coherent for a verification skill, but its actual footprint is broad and high-trust. The main concern is that the skill's sole execution boundary is an unseen local driver script, making the core code-execution path unverifiable from the supplied scan; combined with autonomous commit/push behavior and broad command execution, this is a high security-risk skill even without clear evidence of malware.
Confidence: 82%Severity: 74%
Audit Metadata