linearis-cli

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's overall purpose is coherent, and most flagged shell/file patterns are normal documentation or local-replica access. The main issue is scope and trust: it makes a third-party, non-vendor CLI the authoritative write path and forwards Linear credentials into it, creating a meaningful supply-chain and credential-forwarding risk despite otherwise aligned data flows.

Confidence: 89%Severity: 76%
Audit Metadata
Analyzed At
Sep 16, 2026, 09:30 PM
Package URL
pkg:socket/skills-sh/coalesce-labs%2Fcatalyst-dev-skills%2Flinearis-cli%2F@d1b552e485a76e0fb9b88273b76e9fa3ea5d60e726d4d9fc30a7816b075db8f5
Security Audit — socket — linearis-cli