te-operation

Warn

Audited by Socket on Apr 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill’s stated capabilities fit its purpose, but its entire function relies on an unverified external binary (`te-cli`) with no documented install path or publicly confirmed same-org provenance. There is no direct evidence of malicious behavior in the snippet, yet the missing trust chain for the required CLI makes this a high supply-chain risk.

Confidence: 82%Severity: 78%
Audit Metadata
Analyzed At
Apr 4, 2026, 05:25 AM
Package URL
pkg:socket/skills-sh/zjandrew%2Fte-cli%2Fte-operation%2F@cad604e45739993839aeed812fc806b777487360