agent-cli-creator
Warn
Audited by Socket on May 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the purpose is coherent with browser automation, but the skill depends on a hard-to-verify external binary, references a curl|bash vendor installer, and can enable autonomous write actions on arbitrary websites. Data flow appears aligned to the stated purpose rather than overt exfiltration, so this is high security risk but not confirmed malware.
Confidence: 84%Severity: 78%
Audit Metadata