company-intel
Warn
Audited by Socket on Apr 28, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s purpose matches company research, but it reads a local credential file and routes all activity through Gooseworks proxy endpoints instead of direct provider APIs. The same-brand infrastructure makes it more likely legitimate than malicious, yet the proxy data flow and unpinned CLI bootstrap create medium trust and credential-handling risk.
Confidence: 84%Severity: 58%
Audit Metadata