ai-automation-workflows

Warn

Audited by Socket on Aug 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the core workflow purpose matches the examples, but the skill expands trust through transitive skill installation, broad bash capability, and remote CLI installation. Data flows to inference/model services are expected, yet webhook/error forwarding and automation templates could expose local content if misused. Not confirmed malware, but medium-high operational and supply-chain risk.

Confidence: 87%Severity: 74%
Audit Metadata
Analyzed At
Aug 6, 2026, 05:03 AM
Package URL
pkg:socket/skills-sh/whytryharder%2Fskills%2Fai-automation-workflows%2F@c3f422ca1582b8c812fdae4a2cac8691a6cca2ed1dce4ea5dd29971d9485c6e2
Security Audit — socket — ai-automation-workflows