Opencode-controller
Alert level: High
Controller workflow for managing Opencode sessions, models, auth handshakes, and delegated coding runs.
Locality:Hybrid
Data access:Sensitive
Actions:Execute
Installs 9Downloads 2719Stars 7Updated 11h ago
Why this rating
Deterministic checks triggered by the tool capabilities and evidence.
- Locality: Hybrid
Local session control depends on external provider-authenticated model services.
- Data access: Sensitive
Planning/coding prompts and auth handshakes can include proprietary code context and credentials.
- Action surface: Execute
It drives explicit command sequences for session, model, and implementation execution.
Best practices
Follow these steps to reduce risk when using this skill.
- Confirm provider/account context before sending proprietary prompts.
- Use least-privilege API keys and rotate them on team or project changes.
- Require human approval gates between planning and implementation phases.
Evidence links
Public sources backing the indicator assignments.
Always be careful when navigating away from the website.
Max-risk rule
If any capability reaches a higher level, the entire indicator level bumps up to keep ratings deterministic and easy to scan.