expanso-cross-border-gdpr
Warn
Audited by Socket on Jul 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the visible skill description is broadly consistent with a GDPR/data-pipeline recipe, and the named tooling appears same-ecosystem, but the real behavior is hidden in missing pipeline.yaml, run.sh, and test.sh. Because credentials and cross-border data handling are implied yet the actual endpoints and script actions are unverifiable, this should be treated as medium risk rather than benign.
Confidence: 79%Severity: 52%
Audit Metadata