cnb-skill

Warn

Audited by Socket on May 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

BENIGN with elevated operational risk. The skill’s capabilities, credentials, and official CNB data flows are broadly aligned with its stated purpose, and the dependency appears same-org and officially documented. The main concern is that it instructs the agent to perform state-changing CNB actions without explicit confirmation, which makes the skill risky for autonomous use even without signs of credential theft or malicious exfiltration.

Confidence: 88%Severity: 64%
Audit Metadata
Analyzed At
May 18, 2026, 01:12 AM
Package URL
pkg:socket/skills-sh/bighardperson%2Fcomputer-science-skills-collection%2Fcnb-skill%2F@f3aefc6b61bd8896182ebd09158c2499dc29c053
Security Audit — socket — cnb-skill