pentest-osint-linkedin

Warn

Audited by Socket on Jul 3, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is internally coherent as a LinkedIn OSINT helper, but its actual footprint is high-sensitivity: it uses raw local session cookies, accesses authenticated LinkedIn content outside the official OAuth/API model, and supports people/network reconnaissance with pentest-oriented use cases. No clear third-party exfiltration or malicious installer is shown, so this is not confirmed malware, but the credential handling and privacy scope make it a medium-risk skill.

Confidence: 84%Severity: 61%
Audit Metadata
Analyzed At
Jul 3, 2026, 10:29 AM
Package URL
pkg:socket/skills-sh/crtvrffnrt%2Fskills%2Fpentest-osint-linkedin%2F@84820159a1b141dee86a5684c2f8046b41ba91c835bc403859311e767a91f78c
Security Audit — socket — pentest-osint-linkedin