content-pipeline

Warn

Audited by Socket on May 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core content-pipeline behavior is broadly aligned with its stated purpose and the human approval gate is a strong safety control, but the analytics path is under-specified: routing via an unnamed FastAPI proxy creates medium risk because credentials and analytics data may traverse a third-party intermediary rather than official APIs. The optional handoff to a WordPress skill also adds transitive trust. No evidence of malware, obfuscation, or malicious install behavior is present in the provided skill text.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
May 12, 2026, 01:09 PM
Package URL
pkg:socket/skills-sh/arturseo-geo%2Fcontent-pipeline-skill%2Fcontent-pipeline%2F@39ce402ba826e969aaece5ee7a23fd8b9bc22d78
Security Audit — socket — content-pipeline