content-engine

Warn

Audited by Socket on Jun 25, 2026

3 alerts found:

Anomalyx2Security
AnomalyLOW
skills/content-engine-autopilot/SKILL.md

SUSPICIOUS: The core browser-orchestration purpose is coherent, but the install trust is not. The skill depends on a third-party browser automation CLI with a publisher mismatch in the instructions, then uses it to manage persistent authenticated sessions for multiple external services. No clear malicious exfiltration is shown, but the provenance inconsistency plus credential-like session handling make the skill medium/high risk.

Confidence: 84%Severity: 63%
AnomalyLOW
SKILL.md

SUSPICIOUS due to compounded trust and semi-autonomous distribution, but not malicious. The core capabilities fit a content-generation studio, and the main installer/data flows point to official same-org or named provider endpoints; the biggest risks are curl|sh install hygiene, saved browser sessions, and transitive invocation of other skills that may publish or act downstream.

Confidence: 88%Severity: 61%
SecurityMEDIUM
skills/content-engine-loop/SKILL.md
Audit Metadata
Analyzed At
Jun 25, 2026, 03:18 AM
Package URL
pkg:socket/skills-sh/broomva%2Fskills%2Fcontent-engine%2F@f63c49331320847a2c28595d96965000b27d3a038d83f871909c3543d012e15c
Security Audit — socket — content-engine