opencli-usage

Warn

Audited by Socket on May 19, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s main content is a legitimate usage guide and its core install path is coherent with the stated OpenCLI project, but it exposes broad execution surfaces through browser-backed authenticated sessions, git-based plugin installs, and arbitrary external CLI passthrough. Those capabilities belong to OpenCLI’s stated purpose, yet they create medium security risk and warrant caution around plugins and external installers.

Confidence: 84%Severity: 57%
Audit Metadata
Analyzed At
May 19, 2026, 11:17 PM
Package URL
pkg:socket/skills-sh/jackwener%2Fopencli%2Fopencli-usage%2F@91d5f18b9b63ba358565b64acc915c7a080e81ba