cloudflare-dns
Warn
Audited by Socket on Mar 28, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s DNS-management behavior matches its stated purpose, but it installs an unverifiable flarectl binary from a personal GitHub account rather than Cloudflare’s documented path, then forwards high-value Cloudflare credentials to that binary. This creates a severe supply-chain and credential-forwarding risk disproportionate to a routine DNS helper.
Confidence: 93%Severity: 90%
Audit Metadata