link-drop-pipeline

Warn

Audited by Socket on Jul 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s capabilities mostly match its stated purpose, but the footprint is high-risk: it mixes untrusted content ingestion, broad local writes, raw credential use, autonomous git/deploy actions, and remote SSH sync. The main concern is not malware evidence but disproportionate automation and prompt-injection exposure for an agent skill.

Confidence: 82%Severity: 78%
Audit Metadata
Analyzed At
Jul 15, 2026, 12:54 PM
Package URL
pkg:socket/skills-sh/Lua2147%2Fclaude-toolkit-catalog%2Flink-drop-pipeline%2F@e44cc8a9eb2acb90f065b44a458e9e258a8b645e2f968e262958755ee228aec7
Security Audit — socket — link-drop-pipeline