opencode-handoff
Warn
Audited by Socket on Sep 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose is coherent and the OpenCode credential exclusion is explicit, but the skill still forwards other host credentials into a container started from a mutable personal GHCR image and a transitive local script. The main risk is supply-chain plus credential forwarding, not confirmed malware.
Confidence: 89%Severity: 80%
Audit Metadata