ss-cli-resolve-and-deploy
Warn
Audited by Socket on Mar 19, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The purpose is coherent, but the core secret-handling dependency is an undocumented/unverifiable ss-cli rather than Delinea's documented tss tooling. Because that binary processes live credentials and pipes them to remote deployment targets, the install-trust and credential-forwarding risks are disproportionate until provenance is verified.
Confidence: 89%Severity: 84%
Audit Metadata