Skip to main content

project-session-manager

Manages isolated development environments using git worktrees and tmux sessions for efficient parallel task handling.

Install this skill

or
50/100

Security score

The project-session-manager skill was audited on May 19, 2026 and we found 26 security issues across 2 threat categories. Review the findings below before installing.

Categories Tested

Security Issues

medium line 30

Webhook reference - potential data exfiltration

SourceSKILL.md
30| `feature <proj> <name>` | Feature development | `/psm feature omc add-webhooks` |
low line 122

Webhook reference - potential data exfiltration

SourceSKILL.md
122psm feature mywork add-webhooks
low line 448

Webhook reference - potential data exfiltration

SourceSKILL.md
448PR: #123 - Add webhook support
low line 449

Webhook reference - potential data exfiltration

SourceSKILL.md
449Branch: feature/webhooks
medium line 40

Access to hidden dotfiles in home directory

SourceSKILL.md
40- **Alias**: `omc#123` (requires `~/.psm/projects.json`)
medium line 47

Access to hidden dotfiles in home directory

SourceSKILL.md
47### Project Aliases (`~/.psm/projects.json`)
low line 59

Access to hidden dotfiles in home directory

SourceSKILL.md
59"worktree_root": "~/.psm/worktrees",
low line 147

Access to hidden dotfiles in home directory

SourceSKILL.md
147~/.psm/
medium line 159

Access to hidden dotfiles in home directory

SourceSKILL.md
159| PR Review | `psm:omc:pr-123` | `~/.psm/worktrees/omc/pr-123` |
medium line 160

Access to hidden dotfiles in home directory

SourceSKILL.md
160| Issue Fix | `psm:omc:issue-42` | `~/.psm/worktrees/omc/issue-42` |
medium line 161

Access to hidden dotfiles in home directory

SourceSKILL.md
161| Feature | `psm:omc:feat-auth` | `~/.psm/worktrees/omc/feat-auth` |
low line 185

Access to hidden dotfiles in home directory

SourceSKILL.md
185cat ~/.psm/projects.json 2>/dev/null || echo '{"aliases":{}}'
low line 243

Access to hidden dotfiles in home directory

SourceSKILL.md
243# Add to ~/.psm/sessions.json
low line 261

Access to hidden dotfiles in home directory

SourceSKILL.md
261Worktree: ~/.psm/worktrees/omc/pr-123
low line 330

Access to hidden dotfiles in home directory

SourceSKILL.md
330cat ~/.psm/sessions.json 2>/dev/null || echo '{"sessions":{}}'
low line 340

Access to hidden dotfiles in home directory

SourceSKILL.md
340ls -la ~/.psm/worktrees/*/ 2>/dev/null
low line 349

Access to hidden dotfiles in home directory

SourceSKILL.md
349omc:pr-123 | review | active | ~/.psm/worktrees/omc/pr-123
low line 350

Access to hidden dotfiles in home directory

SourceSKILL.md
350omc:issue-42 | fix | detached | ~/.psm/worktrees/omc/issue-42
low line 384

Access to hidden dotfiles in home directory

SourceSKILL.md
384worktree_path=$(jq -r ".sessions[\"$session_id\"].worktree" ~/.psm/sessions.json)
low line 385

Access to hidden dotfiles in home directory

SourceSKILL.md
385source_repo=$(jq -r ".sessions[\"$session_id\"].source_repo" ~/.psm/sessions.json)
low line 539

Access to hidden dotfiles in home directory

SourceSKILL.md
539mkdir -p ~/.psm/worktrees ~/.psm/logs
low line 542

Access to hidden dotfiles in home directory

SourceSKILL.md
542if [[ ! -f ~/.psm/projects.json ]]; then
low line 543

Access to hidden dotfiles in home directory

SourceSKILL.md
543cat > ~/.psm/projects.json << 'EOF'
low line 553

Access to hidden dotfiles in home directory

SourceSKILL.md
553"worktree_root": "~/.psm/worktrees",
low line 562

Access to hidden dotfiles in home directory

SourceSKILL.md
562if [[ ! -f ~/.psm/sessions.json ]]; then
low line 563

Access to hidden dotfiles in home directory

SourceSKILL.md
563echo '{"version":1,"sessions":{},"stats":{"total_created":0,"total_cleaned":0}}' > ~/.psm/sessions.json
Scanned on May 19, 2026
View Security Dashboard
Installation guide →