opencli-universal-cli-hub

Warn

Audited by Socket on May 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s capabilities mostly match its stated purpose, and the core install path appears same-project and legitimate. However, the overall footprint is high-risk for an agent skill: it can operate authenticated browser sessions, intercept network traffic, install unpinned plugins from GitHub/local sources, and proxy powerful local CLIs. This is coherent but broad, so it should be treated as a high-impact automation skill rather than benign low-risk tooling.

Confidence: 81%Severity: 69%
Audit Metadata
Analyzed At
May 18, 2026, 03:52 PM
Package URL
pkg:socket/skills-sh/Aradotso%2Fdevtools-skills%2Fopencli-universal-cli-hub%2F@1070bc7d625fde885f2e44685b20fd90115e0a46