android-deploy

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Android deployment skill is internally consistent with its stated purpose. It uses standard, verifiable tooling and credential handling via environment variables, and it targets appropriate services (Google Play Console, Firebase) for deployment. No evidence of credential harvesting, unauthorized data flows, or supply-chain concerns is found. Overall risk is low to moderate given the potential sensitivity of deployment credentials and API keys, but the workflow itself is appropriate for its described use case.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 05:46 PM
Package URL
pkg:socket/skills-sh/alphaonedev%2Fopenclaw-graph%2Fandroid-deploy%2F@47de50e5399368f899301e7c3dc9afede9710ece