te-common
Warn
Audited by Socket on Apr 28, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill’s behavior is broadly aligned with its stated purpose: coordinating TE write operations and post-write link completion. The main security issue is trust: ae-cli is a required opaque dependency with no provenance or verification path in this skill, and auth handling is delegated to another document, making the full credential/data flow non-self-contained. This is better classified as suspicious/high-risk dependency design than confirmed malicious behavior.
Confidence: 84%Severity: 72%
Audit Metadata