stack-exchange

Warn

Audited by Socket on Jun 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is coherent in purpose, and the CLI provenance appears same-org and documented, so this is not strong evidence of malware. However, the integration routes Stack Exchange access and OAuth custody through ClawLink instead of direct official Stack Exchange APIs, creating a third-party credential and data intermediary with write-action capability; that makes the skill medium risk.

Confidence: 82%Severity: 58%
Audit Metadata
Analyzed At
Jun 28, 2026, 02:45 PM
Package URL
pkg:socket/skills-sh/clawlink-hq%2Fskills%2Fstack-exchange%2F@b6be0e527ad5a4a4ba8ad66dba4c1e766f96b4f3d2f814976b5d7d7502d4fdd0
Security Audit — socket — stack-exchange