trending-ad-hook-spotter

Warn

Audited by Socket on Apr 10, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's purpose is coherent, and it avoids installers and broad credential grabs, but it routes a token to Apify to execute a third-party Reddit scraping actor and processes large amounts of untrusted external content. Main concerns are third-party service trust, token handling in query strings, and prompt-injection exposure rather than confirmed malicious behavior.

Confidence: 89%Severity: 57%
Audit Metadata
Analyzed At
Apr 10, 2026, 10:50 AM
Package URL
pkg:socket/skills-sh/gooseworks-ai%2Fgoose-skills%2Ftrending-ad-hook-spotter%2F@47ebdff11e67c6d1716386288c7e58d3bdac99e6