cali-product-scope-executor

Warn

Audited by Socket on Jul 3, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s core behavior is coherent with a plan-execution orchestrator, but it grants high autonomous agency, executes plan-influenced commands, and relies on loosely specified external Pi tools/skills. I found no clear credential theft, exfiltration endpoint, or confirmed malware, but the transitive trust and unattended execution model make it a medium-to-high operational risk skill.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Jul 3, 2026, 12:54 PM
Package URL
pkg:socket/skills-sh/calionauta%2Fstelow%2Fcali-product-scope-executor%2F@5d92fb66d26d830ea6c792675cc761ccbc1710b26e11c9a2aab24dad565d88b7
Security Audit — socket — cali-product-scope-executor