NYC

gh-cli

Pass

Audited by Socket on Feb 16, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Feb 16, 2026, 12:35 AM
Package URL
pkg:socket/skills-sh/smithery%2Fai%2Fgithub-gh-cli%2F@07c0ee50e0ebc53b77d9b05d26ff17ec065907e9587c65e1d1a1c92d2f8020fe