create-cli

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill describes a conventional, developer-focused CLI design/audit workflow that operates largely within local environment boundaries (reading guideline files, inspecting code with Glob/Grep, and executing a harmless --help on target CLIs). There is no indication of credential access, external network communication, or download/install actions. The footprint is coherent with its stated purpose of designing/auditing CLI surfaces. Minor caveats include the need for sandboxing when executing arbitrary commands and ensuring proper consent when inspecting user projects. Overall, the skill appears BENIGN with MEDIUM securityRISK due to potential command execution in local environments if not properly sandboxed.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 03:41 PM
Package URL
pkg:socket/skills-sh/gupsammy%2FClaudest%2Fcreate-cli%2F@e92acb6a417eb68fbb5b60d06eb3c76e9105caec