apify-webhooks-events

Warn

Audited by Socket on Sep 9, 2026

1 alert found:

Anomaly
AnomalyLOW
references/implementation.md

The fragment appears to be legitimate webhook integration code and contains no clear malicious behavior or intentional obfuscation. It has meaningful security weaknesses if deployed as shown: webhook endpoints lack authentication or signature verification, and the pipeline route can be abused to start Apify actors and incur costs. Runtime validation, authenticated webhook verification, durable idempotency, rate limiting, and resource limits are recommended.

Confidence: 96%Severity: 68%
Audit Metadata
Analyzed At
Sep 9, 2026, 03:45 AM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Ftons-of-skills-marketplace%2Fapify-webhooks-events%2F@2a6a19c1fb09002d77219132a268ed27c8c6c9151fe5cc27e178e1e249868821
Security Audit — socket — apify-webhooks-events