opencli-oneshot

Warn

Audited by Socket on Apr 11, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is broadly aligned with its stated purpose and uses same-org OpenCLI tooling, so it is not clearly malicious. However, it teaches an agent to inspect arbitrary websites, reuse session credentials/tokens, capture network traffic, and generate executable adapters from untrusted external content, which is a medium-risk capability set for a one-shot helper skill.

Confidence: 82%Severity: 56%
Audit Metadata
Analyzed At
Apr 11, 2026, 05:31 PM
Package URL
pkg:socket/skills-sh/jackwener%2Fopencli%2Fopencli-oneshot%2F@b465b3e33aff8f040943ec5a6935b06309dc1058