dino-auth

Warn

Audited by Socket on Jul 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s purpose and commands are mostly coherent for an auth helper and it tries to reduce token exposure, but it relies on an external `dino` CLI whose exact auth interface and provenance are not fully established from the skill or public verification. Risk is driven more by dependency trust and credential forwarding to a local binary than by overtly malicious behavior.

Confidence: 84%Severity: 56%
Audit Metadata
Analyzed At
Jul 13, 2026, 12:08 PM
Package URL
pkg:socket/skills-sh/ryzencool%2Fdinox-cli-skills%2Fdino-auth%2F@1d13f6498cdf21c6a1e7697ec3ebb0487902267f804787608bab4722d7e2976c
Security Audit — socket — dino-auth