pagerduty

Warn

Audited by Socket on Jun 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s purpose and capabilities are internally consistent, and the CLI appears to come from the same publisher via npm, so this is not strong malware evidence. However, the integration routes PagerDuty access and data through ClawLink’s hosted backend rather than direct official PagerDuty API usage, creating meaningful third-party trust, credential concentration, and data-flow risk.

Confidence: 90%Severity: 68%
Audit Metadata
Analyzed At
Jun 28, 2026, 02:46 PM
Package URL
pkg:socket/skills-sh/clawlink-hq%2Fskills%2Fpagerduty%2F@169190abb6f378dd3ba653d1aefa9e2cf57ac3452c9c4d1dcc953def33e9848b
Security Audit — socket — pagerduty