opentrons-app

Warn

Audited by Socket on Sep 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s purpose and capabilities mostly align, and its safety boundary is unusually explicit, but it depends on a non-Opentrons third-party GUI automation tool whose documented install path uses unpinned `curl|bash`. There is no clear credential theft or exfiltration behavior, so this is not malware, but the combination of third-party automation tooling and robot-affecting actions makes it a medium security risk.

Confidence: 88%Severity: 58%
Audit Metadata
Analyzed At
Sep 1, 2026, 08:41 AM
Package URL
pkg:socket/skills-sh/pudap%2Fopen-computer-use-puda%2Fopentrons-app%2F@8a46d1ec18406b2487c050330789f7b56d7ea26dd46f23724d2a4ae0be859c30
Security Audit — socket — opentrons-app