ops-yolo
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH RISK. The skill’s stated purpose matches business analysis and operations, but its actual footprint is excessively broad: it collects extensive sensitive context, resolves multiple high-value credentials, consumes untrusted external content, and enables autonomous real-world actions. Most importantly, it invokes opaque local ops-* binaries with no verifiable provenance while likely exposing secrets to them, which triggers a high-risk supply-chain and credential-forwarding concern.
Confidence: 90%Severity: 92%
Audit Metadata