looper-pr-takeover

Warn

Audited by Socket on Sep 7, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s core behavior matches its stated PR-takeover purpose and mostly uses official GitHub APIs, but it grants an AI agent broad autonomous control over live repository actions and can run unattended via a daemon. Optional Looper installation appears same-org and partially verified, so this is not confirmed malware, but the combination of autonomous merge/push authority and untrusted review-content handling makes it high-impact and risky.

Confidence: 88%Severity: 68%
SecurityMEDIUM
references/github-commands.md

The fragment is a high-impact operational “PR takeover” automation playbook that can bypass human review/merge gates by programmatically resolving review threads and dismissing CHANGES_REQUESTED reviews, then pushing commits and merging (including auto-merge). While the snippet contains no evidence of embedded malware or obfuscation, it is dangerous in any context where it could be executed with unauthorized or overly privileged GitHub credentials. Treat as a serious governance/integrity risk rather than a traditional malware payload.

Confidence: 78%Severity: 85%
Audit Metadata
Analyzed At
Sep 7, 2026, 12:50 PM
Package URL
pkg:socket/skills-sh/theangrypit%2Ftheangryskills%2Flooper-pr-takeover%2F@9113cf702ff1ce0c73b73305b3e334afac6cdc63a8ede261f77e01c8f521cd40
Security Audit — socket — looper-pr-takeover