Stripe Connect Integration

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The stated Stripe Connect purpose is coherent, and the described capabilities fit that purpose. The main security concern is transitive installation from a third-party skill repository via the skills CLI; without reviewing the installed skill contents, trust remains only moderate. Overall this is better classified as suspicious-to-medium risk supply-chain exposure, not malware.

Confidence: 80%Severity: 52%
Audit Metadata
Analyzed At
Mar 29, 2026, 04:35 AM
Package URL
pkg:socket/skills-sh/agentskillexchange%2Fskills%2Fstripe-connect-integration%2F@306e057d60c23afc641482ca251a9226a654d37c