bol-com

Warn

Audited by Socket on May 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is internally consistent with its stated purpose as an Apideck connector guide, and its package/install footprint is low risk. However, it routes bol.com access and credential handling through Apideck Vault/Unify and even direct endpoint fallback through Apideck Proxy, so data flow is mediated by a third party rather than the official bol.com API. That is proportionate for an Apideck skill, but it creates medium security risk from credential forwarding and intermediary API routing rather than malware behavior.

Confidence: 90%Severity: 56%
Audit Metadata
Analyzed At
May 12, 2026, 07:01 PM
Package URL
pkg:socket/skills-sh/apideck-libraries%2Fapi-skills%2Fbol-com%2F@a5c04e99df80c68bf0af07a9c397c780ab3b5b50
Security Audit — socket — bol-com