cli-gh

Fail

Audited by Socket on Mar 1, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The skill description is internally coherent and proportionate to its stated purpose of guiding safe GitHub CLI usage without destructive actions. There are no evident data exfiltration points, credential reads, or external download patterns in the fragment. The safety rules (prohibiting destructive commands) reinforce a benign posture. Overall, the artifact appears benign given the information provided.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 1, 2026, 01:33 AM
Package URL
pkg:socket/skills-sh/paulrberg%2Fdot-agents%2Fcli-gh%2F@56e0f9050e5a44bd27e1d45eed29578dc5ac78bd