ask-cli

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill presents a coherent and proportionate footprint for a StoreKit query utility. The primary security considerations involve handling of sensitive authentication material (issuer private key) and ensuring output does not leak PII or sensitive transaction identifiers. If the ask CLI is trusted and credentials are protected, the risk remains moderate and acceptable for a developer tool; otherwise, credential exposure and key management should be reviewed. Overall, benign with caveats around secret handling.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 03:38 PM
Package URL
pkg:socket/skills-sh/dl-alexandre%2FSkills%2Fask-cli%2F@0efcc758df944645c6b66ddd09a8a2dcb7577030