vibe-deploy
Warn
Audited by Socket on Mar 30, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill’s stated purpose matches its capabilities: it is a deployment guide for iblai apps across Vercel, Docker, and Tauri targets. The main concern is install/execution trust: it invokes an official but unpinned Vercel CLI and depends on an `iblai` CLI whose exact public provenance was not clearly verifiable from the provided evidence. Data flows otherwise appear proportionate and aligned with iblai deployment, with no clear credential-harvesting or exfiltration behavior shown.
Confidence: 82%Severity: 78%
Audit Metadata