lazyweb-paywall-cta

Warn

Audited by Socket on Jun 22, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is mostly coherent with its stated paywall-CTA purpose, and its network endpoints stay on Lazyweb's own domain, but it relies on a raw curl|bash installer, broad agent permissions, and third-party hosted processing for user screenshots/report data. This looks like a legitimate but medium-risk hosted workflow rather than confirmed malware.

Confidence: 86%Severity: 58%
Audit Metadata
Analyzed At
Jun 22, 2026, 07:56 PM
Package URL
pkg:socket/skills-sh/aboul3ata%2Flazyweb-skill%2Flazyweb-paywall-cta%2F@af800cb5583e99a37b1e0a2f71c78fdce1ffd36b272ae4285de31a0332cb9f97
Security Audit — socket — lazyweb-paywall-cta