autonomous-dev

Warn

Audited by Socket on May 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s purpose broadly matches a developer workflow, and it uses official Git/GitHub tooling rather than suspicious proxy endpoints, but it grants an agent broad autonomous write/execution capability and runs multiple unverifiable repository-local scripts. The main risk is operational autonomy and trust in local hook/wrapper scripts, not confirmed malware or credential theft.

Confidence: 84%Severity: 68%
Audit Metadata
Analyzed At
May 14, 2026, 07:04 PM
Package URL
pkg:socket/skills-sh/zxkane%2Fautonomous-dev-team%2Fautonomous-dev%2F@a2ff02a3fc58a6e680d5e6a03c1082494f3508a0