cli-bridge
Warn
Audited by Socket on May 12, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's purpose is coherent, but its actual trust model routes authentication through an only partially verified `sc-chatroom` gateway that stores and resolves underlying AKM secrets server-side. There is no obvious malware pattern or rogue installer, yet the credential forwarding and third-party mediation are high-impact enough to make this medium risk rather than benign.
Confidence: 100%Severity: 60%
Audit Metadata