readwise-docs

Warn

Audited by Socket on Mar 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s purpose and API scope are mostly coherent for Readwise document management, and the data flow appears to target official Readwise services. However, the skill does not specify how the `readwise` CLI is obtained, and the documented command syntax does not match the currently published official CLI surface, leaving install trust and exact executable provenance unresolved. This is not confirmed malware, but it carries moderate supply-chain and credential-forwarding risk until the expected CLI source/version is clarified.

Confidence: 87%Severity: 56%
Audit Metadata
Analyzed At
Mar 17, 2026, 02:37 AM
Package URL
pkg:socket/skills-sh/edwinhu%2Fworkflows%2Freadwise-docs%2F@3bdcf586d62b19e43e8729adcf8a20770a46a3c5