opencli-universal-cli-hub
Warn
Audited by Socket on May 18, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s capabilities mostly match its stated purpose, and the core install path appears same-project and legitimate. However, the overall footprint is high-risk for an agent skill: it can operate authenticated browser sessions, intercept network traffic, install unpinned plugins from GitHub/local sources, and proxy powerful local CLIs. This is coherent but broad, so it should be treated as a high-impact automation skill rather than benign low-risk tooling.
Confidence: 81%Severity: 69%
Audit Metadata