sharecrm
Warn
Audited by Socket on May 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill’s purpose and capabilities are mostly coherent for a CRM CLI integration, and its confirmation rules are reasonable. The main issue is install and execution trust: the agent is told to install and authenticate into an external `sharecrm` binary whose official public distribution was not verified from the available evidence, so the binary remains a significant trust and credential-forwarding risk.
Confidence: 80%Severity: 72%
Audit Metadata