substack-publish
Warn
Audited by Socket on Sep 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s publishing purpose is coherent, and it has no installer or obvious malware behavior, but it relies on a manually extracted browser session cookie and forwards that credential through an external MCP backend/gateway whose exact `substack-*` implementation is not provided. The main risk is sensitive credential forwarding and unverifiable backend data handling, not confirmed malicious intent.
Confidence: 88%Severity: 68%
Audit Metadata