tailrocks-prove

Warn

Audited by Socket on Sep 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is coherent for a verification skill, but its actual footprint is broad and high-trust. The main concern is that the skill's sole execution boundary is an unseen local driver script, making the core code-execution path unverifiable from the supplied scan; combined with autonomous commit/push behavior and broad command execution, this is a high security-risk skill even without clear evidence of malware.

Confidence: 82%Severity: 74%
Audit Metadata
Analyzed At
Sep 8, 2026, 03:13 PM
Package URL
pkg:socket/skills-sh/tailrocks%2Ftailrocks-roadmap-skills%2Ftailrocks-prove%2F@0a94aaae9432dee646cf8f392c2c9f691e89d1f385d2697781916db9ceca1d07
Security Audit — socket — tailrocks-prove