osctrl-desktop-automation

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's capabilities mostly align with desktop automation, but it grants an AI agent powerful local control plus screenshot/clipboard access with minimal safeguards and no provenance details for the required CLI. There is no explicit credential theft or exfiltration endpoint, so this is not confirmed malware, but it is a high-impact automation skill that should be treated as risky.

Confidence: 82%Severity: 68%
Audit Metadata
Analyzed At
Mar 31, 2026, 03:24 AM
Package URL
pkg:socket/skills-sh/01000001-01001110%2Fosctrl%2Fosctrl-desktop-automation%2F@90e65a36ae6d2871de4a403c67f6f5b93cc3cf3d