sharepoint

Warn

Audited by Socket on Jun 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's SharePoint purpose is coherent, but its actual footprint relies on a third-party intermediary that stores OAuth access and mediates SharePoint actions and data. Install trust is moderate via npm, yet the main concern is data-flow integrity and credential forwarding to ClawLink rather than direct Microsoft API use.

Confidence: 88%Severity: 68%
Audit Metadata
Analyzed At
Jun 28, 2026, 02:45 PM
Package URL
pkg:socket/skills-sh/clawlink-hq%2Fskills%2Fsharepoint%2F@d23cf545a18362ad08026e6d41e0832bc784e2cb3512421c30c2316fe59b279d
Security Audit — socket — sharepoint