ask-smart-booking-test

Warn

Audited by Socket on May 19, 2026

1 alert found:

Security
SecurityMEDIUM
config/identity.json

No executable malware is present in the snippet (it is data-only). However, it contains extremely sensitive data in cleartext, including a plaintext PayPal password and extensive PII/payment identifiers. If this appears in any published package/artifact or is handled by consuming code in logs/UI/storage/transmission, it creates a high risk of credential and privacy exposure. Rotate any exposed credentials and remove/purge the data from all distribution paths.

Confidence: 82%Severity: 90%
Audit Metadata
Analyzed At
May 19, 2026, 04:38 PM
Package URL
pkg:socket/skills-sh/NavanithanS%2FAgent-Skill-Kit%2Fask-smart-booking-test%2F@09e2134d6a9ec1da1904b0fd2fd6269cbaed4f4f
Security Audit — socket — ask-smart-booking-test