coolify
Warn
Audited by Socket on Mar 24, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The capability set mostly matches a Coolify admin skill, but trust is undermined by a key inconsistency: it points to a third-party repo even though Coolify's official CLI is published from a different org. Because this skill handles API tokens and can forward SSH/GitHub private keys through that non-official CLI while also allowing destructive infrastructure actions, its footprint is riskier than a normal first-party integration.
Confidence: 84%Severity: 76%
Audit Metadata