hand-over-to-kiro
Warn
Audited by Socket on Jul 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill is purpose-aligned and includes meaningful guardrails: no auto-install, no raw shell interpolation, scoped trust, and post-run diff verification. The main risk is structural: it requires a proprietary external CLI that can modify files and receive substantial repo context, so this is best classified as suspicious/high-risk from a supply-chain and delegated-agent perspective, not as confirmed malware.
Confidence: 85%Severity: 72%
Audit Metadata