codex-console-automation

Warn

Audited by Socket on May 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

High-risk skill. Its capabilities match its stated purpose, but that purpose is mass OpenAI account automation, token forwarding, and payment handling through third-party services. The indirect install provenance, disproportionate credential scope, and non-official token upload paths make this suspicious and unsafe; high security risk, but not enough evidence for confirmed malware.

Confidence: 92%Severity: 94%
Audit Metadata
Analyzed At
May 16, 2026, 06:53 PM
Package URL
pkg:socket/skills-sh/Aradotso%2Fcodex-skills%2Fcodex-console-automation%2F@f1df1a1e2061c8ad1390801a858b872cf020c3dc