pain-language-engagers

Warn

Audited by Socket on Apr 11, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's lead-gen purpose matches LinkedIn scraping, but its actual footprint relies on community Apify actors that receive the user's APIFY_API_TOKEN and scraped data. That third-party credential/data routing is disproportionate to a simple prospecting helper and is the main reason for elevated risk, even without confirmed malicious behavior.

Confidence: 84%Severity: 81%
Audit Metadata
Analyzed At
Apr 11, 2026, 03:56 PM
Package URL
pkg:socket/skills-sh/gooseworks-ai%2Fgoose-skills%2Fpain-language-engagers%2F@fce6c51e727f1e76f5f196c8034582381a2aa888
Security Audit — socket — pain-language-engagers