eve-cli-primitives
Warn
Audited by Socket on Sep 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the documented capabilities mostly match an app-platform CLI reference, but the skill omits trustworthy provenance for the required `eve` binary while instructing users to pass sensitive credentials and secret-derived env values through it. The main concern is install/execution trust and credential forwarding to an ambiguous external CLI, not overt malicious behavior in the skill text itself.
Confidence: 84%Severity: 74%
Audit Metadata