contract-metadata-extraction

Warn

Audited by Socket on May 20, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core ServiceNow data access and record updates fit contract metadata extraction, and there is no obvious credential theft or off-platform exfiltration. Risk is elevated because the skill includes arbitrary background-script execution, broad roles, and unnecessary Bash declaration, making its operational footprint wider than needed for a metadata extraction skill.

Confidence: 84%Severity: 56%
Audit Metadata
Analyzed At
May 20, 2026, 01:37 PM
Package URL
pkg:socket/skills-sh/Happy-Technologies-LLC%2Fhappy-platform-skills%2Fcontract-metadata-extraction%2F@405421942a4030e97cbe7855e5835949806e9857
Security Audit — socket — contract-metadata-extraction