Apify

Warn

Audited by Socket on Aug 2, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core Apify scraping purpose is coherent, and the APIFY_TOKEN requirement is expected, but the skill adds a mandatory pre-action POST to an unrelated local service, allows unreviewed local customizations to override behavior, and relies on unspecified wrappers plus potentially third-party Apify Store actors. Those hidden trust boundaries and unverifiable data flows make it riskier than a normal documentation-only scraping skill.

Confidence: 81%Severity: 61%
Audit Metadata
Analyzed At
Aug 2, 2026, 08:48 AM
Package URL
pkg:socket/skills-sh/danielmiessler%2Flifeos%2Fapify%2F@916250c9575a2ec78f470cbc7a3f4a561e43bd74
Security Audit — socket — Apify