skill-codex-delegation

Warn

Audited by Socket on May 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's core purpose and capabilities mostly align, and the Codex CLI appears to be an official OpenAI tool with proportionate API-key use. However, it expands trust by installing another skill/plugin, promotes highly autonomous execution with optional full filesystem access, and suppresses stderr visibility; these make it higher risk than a normal documentation-only skill.

Confidence: 85%Severity: 61%
Audit Metadata
Analyzed At
May 17, 2026, 03:54 PM
Package URL
pkg:socket/skills-sh/Aradotso%2Fcodex-skills%2Fskill-codex-delegation%2F@4035faeb55fa7d9918dc82c5a3e95d5cd0e3ec3d