opencli-operate
Warn
Audited by Socket on Apr 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s core capabilities largely match its stated purpose, and the install source appears legitimate, but it grants an AI agent broad browser control over authenticated sessions, arbitrary in-page JS execution, network-response inspection, and local adapter creation. Those powers are high-risk for data exposure and unintended real-world actions even without clear evidence of malicious intent.
Confidence: 85%Severity: 68%
Audit Metadata