implement-issue

Warn

Audited by Socket on May 11, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose matches GitHub workflow automation, but the footprint is elevated by a transitive dependency on a separate third-party skill, autonomous public/project-modifying actions, and prompt-injection exposure from external issue content. Not confirmed malicious, but high enough risk to require careful review before use.

Confidence: 89%Severity: 78%
Audit Metadata
Analyzed At
May 11, 2026, 08:11 PM
Package URL
pkg:socket/skills-sh/thatjuan%2Fagent-skills%2Fimplement-issue%2F@5744216e1fa8b2b83ed130fb6ebce36f10e90440