opencli-usage
Warn
Audited by Socket on Apr 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s install sources appear same-publisher and broadly legitimate, so this is not a clear supply-chain lure. However, its footprint is expansive for a simple “usage guide”: it relies on a side-loaded browser extension, an auto-start daemon, and reuse of logged-in Chrome sessions across many platforms, which creates meaningful account-action and data-access risk without clearly documenting boundaries or data flows.
Confidence: 80%Severity: 56%
Audit Metadata