add-dial-tool
Audited by Socket on Aug 30, 2026
2 alerts found:
SecurityAnomalySUSPICIOUS: the skill is internally aligned with its stated purpose, but that purpose is high impact. It intentionally grants agents real-world calling/SMS and spending power, reads a raw Dial API key from disk, and forwards it into OneCLI's intermediary injection layer. Install provenance for Dial is reasonably verifiable and same-org, so this is not confirmed malware, but the combination of credential forwarding, proxy-mediated data flow, and autonomous real-world actions makes it a high-risk skill.
BENIGN overall for a telecom/phone-action skill: capabilities match the stated purpose and data flows stay on official Dial domains. Main risk is high real-world action scope (texts, calls, number purchases) plus moderate ecosystem install hygiene concerns outside this skill; there is no clear sign of credential theft, covert exfiltration, or publisher mismatch.