onequery-cli
Warn
Audited by Socket on Apr 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s purpose and capabilities are mostly coherent and read-only, but trust in the external CLI is only partially verified: public evidence did not clearly confirm official first-party installation docs, release provenance, or signatures. Because the skill may install a global CLI and pass access tokens through it, the main risk is supply-chain and credential-forwarding trust rather than clear malicious behavior.
Confidence: 78%Severity: 56%
Audit Metadata