cml-node-operations

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's capabilities fit its stated CML node-operations purpose, and data flows mostly match that purpose. Main concerns are trust in a third-party MCP package from a personal GitHub owner, credential forwarding to that package, and optional disabling of SSL verification; these raise moderate security risk but do not indicate confirmed malicious intent.

Confidence: 86%Severity: 52%
Audit Metadata
Analyzed At
Mar 18, 2026, 06:13 AM
Package URL
pkg:socket/skills-sh/automateyournetwork%2Fnetclaw%2Fcml-node-operations%2F@cc4bbb89ea8dcaf560cd53db57dc8a07b4447b16
Security Audit — socket — cml-node-operations