flow-cli

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Anomaly
AnomalyLOW
references/docs/examples/workflows/claude-profile-triage.yaml

No explicit malicious payload is visible in the provided configuration, but the workflow is security-relevant due to (1) a hardcoded absolute local auth profile path, (2) granting Claude powerful tool permissions including Bash and filesystem Write/Edit, and (3) executing an unknown repo-local completion script. This setup should be treated as a moderate risk automation that requires sandboxing, strict egress controls, least-privilege tool permissions, and inspection/auditing of ./scripts/mark-done.sh and the harness runtime boundaries.

Confidence: 56%Severity: 62%
Audit Metadata
Analyzed At
Apr 2, 2026, 09:17 PM
Package URL
pkg:socket/skills-sh/workbench-ai%2Fworkbench-skills%2Fflow-cli%2F@98755421a40573a96438db89ff79878d210153b2
Security Audit — socket — flow-cli