cali-ops-deploy-github-tailscale
Warn
Audited by Socket on Jul 18, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s overall purpose is coherent for CI/CD deployment, and its main external dependencies are official Tailscale/GitHub components. However, it contains meaningful security and trust issues: a curl|sh installer, broad local credential reuse by copying root Docker auth, non-immutable action pinning, and a significant technical inconsistency about Tailscale SSH on port 2222. These issues make the skill risky and error-prone, but not malicious.
Confidence: 90%Severity: 58%
Audit Metadata