contentstudio

Warn

Audited by Socket on May 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill's purpose aligns with social-media management, but it relies on a CLI whose publisher relationship to ContentStudio is not clearly verified and asks the user to entrust a high-value API key to that CLI. The posting/deletion capabilities are proportionate to the stated purpose but inherently high impact, so the main risk is third-party CLI trust and credential forwarding rather than clear malicious behavior.

Confidence: 81%Severity: 74%
Audit Metadata
Analyzed At
May 5, 2026, 03:34 PM
Package URL
pkg:socket/skills-sh/d4interactive%2Fcontentstudio-agent%2Fcontentstudio%2F@9adafa7224c1969c2eef399bc0740c43e7792279