pp-roam
Warn
Audited by Socket on May 9, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is broadly consistent with its stated Roam automation purpose, but it depends on an external CLI, forwards API credentials to that tool, supports arbitrary webhook output delivery, and exposes high-impact admin/messaging actions. This looks more like a powerful but high-risk integration skill than confirmed malware.
Confidence: 80%Severity: 68%
Audit Metadata