opencli-usage
Warn
Audited by Socket on May 19, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s main content is a legitimate usage guide and its core install path is coherent with the stated OpenCLI project, but it exposes broad execution surfaces through browser-backed authenticated sessions, git-based plugin installs, and arbitrary external CLI passthrough. Those capabilities belong to OpenCLI’s stated purpose, yet they create medium security risk and warrant caution around plugins and external installers.
Confidence: 84%Severity: 57%
Audit Metadata