gdpr-compliance-checker

Warn

Audited by Socket on May 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's main GDPR-audit purpose is plausible, but its actual footprint is broad: it reads sensitive repo areas including .env files, performs autonomous web research, and relies on unverified transitive format skills before proceeding. I found no confirmed malware, no remote-code execution, and no explicit credential forwarding to third-party binaries, but the combination of broad local access plus network activity plus transitive skill dependence makes the skill medium risk.

Confidence: 87%Severity: 66%
Audit Metadata
Analyzed At
May 28, 2026, 03:42 PM
Package URL
pkg:socket/skills-sh/goSprinto%2Fcompliance-skills%2Fgdpr-compliance-checker%2F@8b19fcca8d3b7fd304113f4b00e78f142db90904
Security Audit — socket — gdpr-compliance-checker