pr-review-loop
Warn
Audited by Socket on Aug 3, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The core PR-review workflow is coherent and mostly purpose-aligned, but the skill materially expands its trust boundary by dynamically fetching and applying third-party skills with `npx skills use`, plus autonomously committing and pushing changes. The main concern is transitive trust and prompt-injection exposure from remote skill content, not confirmed malware or credential theft.
Confidence: 89%Severity: 72%
Audit Metadata