cloudflare-registrar

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s purpose and requested Cloudflare credentials are broadly coherent with registrar operations, and the API paths match official Cloudflare endpoints. However, it routes credentials and requests through an external CLI/MCP layer (`mcporter` -> `cloudflare-openclaw`) whose server ownership and data path are not verified in the skill, and it uses unpinned `npx` execution. The billable registration capability is high-impact but partially mitigated by the explicit confirmation guardrail.

Confidence: 85%Severity: 64%
Audit Metadata
Analyzed At
Sep 16, 2026, 11:27 PM
Package URL
pkg:socket/skills-sh/steipete%2Fagent-scripts%2Fcloudflare-registrar%2F@a44ceb691b5eca07d537a520d0bd66b3b9cdc99474f9e50af5f8125f49389dc0
Security Audit — socket — cloudflare-registrar