google-play

Warn

Audited by Socket on May 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's functionality matches its stated Google Play management purpose, and it does not contain a risky installer or hidden binary. The main concern is data-flow integrity: it routes Google Play API traffic and authorization through Maton-controlled gateway/control-plane endpoints instead of Google's official direct API/auth pattern. That proxy design may be legitimate for a managed integration service, but it creates meaningful credential-forwarding and account-action risk, especially because the skill exposes high-impact operations such as refunds, cancellations, deletes, and review replies.

Confidence: 89%Severity: 72%
Audit Metadata
Analyzed At
May 14, 2026, 12:17 AM
Package URL
pkg:socket/skills-sh/CraftOS-dev%2FCraftBot%2Fgoogle-play%2F@390de91f5562a830e34eccd55f40d82bc02ac88f
Security Audit — socket — google-play