tiktok-spark-ads

Warn

Audited by Socket on Aug 22, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core Spark Ads workflow is consistent with the stated purpose, but the data path is not fully clean: sensitive TikTok ad operations and Spark auth codes appear to flow through an 'Appeeky MCP' layer whose public TikTok tooling provenance is not clearly verified. There is no direct malware or installer behavior, but the combination of third-party routing ambiguity and autonomous campaign activation makes this a medium-risk skill.

Confidence: 82%Severity: 56%
Audit Metadata
Analyzed At
Aug 22, 2026, 10:19 PM
Package URL
pkg:socket/skills-sh/appeeky%2Fua-skills%2Ftiktok-spark-ads%2F@22e6f981707f19bfdd3edab7a4049bf1b6e08b9d68b7fe0c0a7eb290bb5fe6a2
Security Audit — socket — tiktok-spark-ads