hf-cli

Pass

Audited by Socket on May 16, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
May 16, 2026, 05:24 AM
Package URL
pkg:socket/skills-sh/huggingface%2Fskills%2Fhf-cli%2F@1db322b1af106ef6ba40937dfb6e95e894a8698f
Security Audit — socket — hf-cli