finding-tiktok-ugc-creators-for-brands

Warn

Audited by Socket on Sep 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s purpose and capabilities mostly align, but it relies on third-party Apify actors and forwards APIFY_TOKEN to remote hosted code. The main risks are supply-chain trust in community actors and weaker token handling via query-string examples, not confirmed malware.

Confidence: 90%Severity: 72%
Audit Metadata
Analyzed At
Sep 2, 2026, 06:57 PM
Package URL
pkg:socket/skills-sh/apidojo-io%2Fapidojo-skills%2Ffinding-tiktok-ugc-creators-for-brands%2F@78713dab1cfd992a6b90ae557d0d5d2b380c84f3d88a36b2da01066592e6aa42
Security Audit — socket — finding-tiktok-ugc-creators-for-brands