implementing-issues
Warn
Audited by Socket on Mar 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill’s core workflow matches its stated purpose, but it includes autonomous remote actions (push and PR creation) and an ambiguous 'linear-cli' dependency that is not verified as an official Linear tool. Data flows otherwise align with normal developer tooling, so this is better classified as high-risk/vulnerable rather than confirmed malicious.
Confidence: 89%Severity: 74%
Audit Metadata