te-operation
Warn
Audited by Socket on Apr 4, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill’s stated capabilities fit its purpose, but its entire function relies on an unverified external binary (`te-cli`) with no documented install path or publicly confirmed same-org provenance. There is no direct evidence of malicious behavior in the snippet, yet the missing trust chain for the required CLI makes this a high supply-chain risk.
Confidence: 82%Severity: 78%
Audit Metadata