huawei-cloud-ascend-remote-connect
Warn
Audited by Socket on Jun 17, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s capabilities generally match its stated SSH remote-admin purpose, and dependency installs come from normal official PyPI channels. The main concerns are the very broad remote-administration scope, real-world impact of agent-driven SSH actions, and insecure password handling via command-line arguments; with no implementation code, the claimed confirmation and blocking controls cannot be verified.
Confidence: 100%Severity: 60%
Audit Metadata