ae-engage

Warn

Audited by Socket on May 11, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s functions mostly match its stated Engage-management purpose, and data flows appear product-consistent, but the required ae-cli binary is not install-verifiable from the skill or public evidence provided. Because that unverifiable CLI handles tokens and can perform write operations, overall security risk is high even without clear evidence of malicious intent.

Confidence: 87%Severity: 81%
Audit Metadata
Analyzed At
May 11, 2026, 07:26 AM
Package URL
pkg:socket/skills-sh/ThinkingAIAgenticEngine%2Fae-cli%2Fae-engage%2F@3e8ca9706ab0002b6f82cf61468866de61e69277
Security Audit — socket — ae-engage