hunter
Warn
Audited by Socket on Jun 28, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s purpose matches Hunter automation, and the npm-based CLI appears same-publisher and officially documented, so this is not confirmed malware. However, the core model is a third-party gateway: ClawLink stores the Hunter OAuth token, the agent stores a reusable ClawLink credential, and all Hunter data/actions are routed through ClawLink rather than Hunter directly. That intermediary credential and data flow is disproportionate enough to rate as medium-high security risk.
Confidence: 87%Severity: 68%
Audit Metadata