pp-beehiiv

Warn

Audited by Socket on May 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's purpose and Beehiiv-focused capabilities are internally coherent, and the install path appears same-project rather than obviously deceptive. However, it expands trust to an external CLI, uses unpinned installer paths, supports arbitrary webhook delivery of results, and exposes many destructive/write operations; these factors make it a medium-risk agent skill even without evidence of outright malware.

Confidence: 81%Severity: 58%
Audit Metadata
Analyzed At
May 13, 2026, 05:58 AM
Package URL
pkg:socket/skills-sh/mvanhorn%2Fprinting-press-library%2Fpp-beehiiv%2F@6cf02c83e2cf7d97beb6eabf728a536c5449eeb8