Missing User Warnings
Medium
- Confidence
- 96% confidence
- Finding
- The README states the skill will automatically push code and monitor CI/CD across GitHub and GitLab, but it does not warn users that invoking the skill may modify remote repositories. Automatic pushes are security-sensitive because they can publish unintended changes, trigger deployment pipelines, leak secrets committed by mistake, or alter protected project history if misused.
