devops
Warn
Audited by Socket on Mar 23, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The core repo audit and infra remediation behavior mostly fits a DevOps skill, and there is no clear remote exfiltration or malicious payload. However, the combination of autonomous no-confirmation operation, transitive sub-skill chaining, write access to infrastructure files, broad ingestion of repo content, and telemetry writes outside the repo makes the skill higher risk than a typical audit tool.
Confidence: 86%Severity: 74%
Audit Metadata