hf-cli

Warn

Audited by Socket on Apr 30, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Overall SUSPICIOUS rather than malicious. The core `hf` CLI is legitimately Hugging Face-owned and fits the stated purpose, so the official installer alone is not a strong malicious signal. Risk comes from broad administrative capabilities, token exposure paths, remote script/job execution, and especially transitive installation of third-party GitHub extensions and additional skills. Safe use requires explicit per-action approval and avoiding extension/skill installs unless provenance is separately verified.

Confidence: 90%Severity: 64%
Audit Metadata
Analyzed At
Apr 30, 2026, 03:57 AM
Package URL
pkg:socket/skills-sh/huggingface%2Fskills%2Fhf-cli%2F@2ff3ff6202f88df7cecbe05cd1a43cac12759ecf