codex-auth-account-manager

Warn

Audited by Socket on May 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s behavior mostly matches its stated purpose, but that purpose is highly sensitive: it asks users to install an unpinned third-party CLI from a personal npm scope and give it direct access to Codex auth files, tokens, and exportable backups. The network endpoints appear consistent with the feature set, so this is not confirmed malware, but the combination of credential management plus third-party executable trust makes the overall risk high.

Confidence: 87%Severity: 82%
Audit Metadata
Analyzed At
May 17, 2026, 12:55 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Fcodex-skills%2Fcodex-auth-account-manager%2F@987ffbd7237aa8f33b39a23019fb05ad23da9c16