pty-bridge
Warn
Audited by Socket on May 3, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the capability matches the stated PTY/interactive-terminal purpose, but the install path is an unpinned GitHub-source global CLI from a personal account with weak release provenance. The main risk is supply-chain trust compounded by credential forwarding and expanded remote-shell control, not clear malicious behavior or hidden exfiltration.
Confidence: 87%Severity: 78%
Audit Metadata