git-commit

Fail

Audited by Socket on Mar 30, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
.skill-meta.json

The fragment alone does not demonstrate malicious activity, but it describes functionality that can pose supply-chain and operational risks if implemented insecurely (automatic staging/committing, unvalidated inputs, or unsafe command execution). A thorough review of the full source is required to evaluate input handling, command invocation, and data flow; focus on input validation, explicit user review gates for staging/commits, and safe invocation of git operations.

Confidence: 90%
Audit Metadata
Analyzed At
Mar 30, 2026, 12:20 AM
Package URL
pkg:socket/skills-sh/tfsugjp%2Fcsharptemplate%2Fgit-commit%2F@4a4f864a64d275939ac9ce9c274b0ade7198897b
Security Audit — socket — git-commit