lead-enrich

Warn

Audited by Socket on Jul 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The stated purpose matches lead enrichment, and the Composio CLI appears to be a legitimate same-org dependency, so this is not confirmed malware. The main concern is data-flow integrity: contact data and toolkit auth are funneled through Composio as an intermediary rather than direct vendor APIs, which creates moderate privacy and trust risk for a business-data enrichment skill.

Confidence: 84%Severity: 52%
Audit Metadata
Analyzed At
Jul 1, 2026, 08:14 PM
Package URL
pkg:socket/skills-sh/composio-community%2Fsupport-skills%2Flead-enrich%2F@48072394385b472f4a8dc1e04bed0615468b9ea4d03379dfbc20918d76f353c3
Security Audit — socket — lead-enrich