hivo-drop
Warn
Audited by Socket on Apr 10, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The operational scope matches a storage skill, but it relies on an externally trusted `hivo` CLI and identity flow that could not be publicly verified from the provided evidence. Since that CLI receives authentication material and performs networked file operations, the main risk is unverifiable credential-bearing third-party tooling rather than confirmed malicious behavior in this skill text.
Confidence: 84%Severity: 83%
Audit Metadata