GraphQL Schema Registry Agent

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated GraphQL governance purpose is plausible, but the actual footprint shown is primarily a transitive third-party skill installation path with weak provenance. The install source does not match the cited upstream GraphQL project, and the skill’s claimed multi-service integrations are not backed by concrete endpoint or credential details.

Confidence: 87%Severity: 74%
Audit Metadata
Analyzed At
Mar 29, 2026, 02:39 AM
Package URL
pkg:socket/skills-sh/agentskillexchange%2Fskills%2Fgraphql-schema-registry-agent%2F@4baa35e45061b71674308b38412dc1563ebda1da