codex-marketing-skills

Warn

Audited by Socket on May 19, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The overall footprint is mostly consistent with a marketing automation skill pack, and the documented API endpoints are generally legitimate. However, it is a broad multi-purpose bundle from a personal/private repo, it relies on several external CLIs and credentials, includes Gmail access, and supports public posting via Buffer. This looks more like a high-risk automation toolkit than clear malware: coherent in purpose, but unusually expansive and requiring careful trust and approval boundaries.

Confidence: 84%Severity: 68%
Audit Metadata
Analyzed At
May 19, 2026, 12:57 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Fmarketing-skills%2Fcodex-marketing-skills%2F@aabaaf76000153d1d083c957cc5cb8901b40c71a
Security Audit — socket — codex-marketing-skills