ecommerce-amazon-product-history

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the overall footprint is mostly consistent with Amazon product-data retrieval, but the skill is internally inconsistent about who actually receives the request. It presents itself as a Keepa product-request skill while routing credentials and data through Nexscope-managed endpoints and persisting full responses locally. This looks more like a vendor proxy/integration than direct Keepa access; that mismatch and intermediary data flow raise medium security concerns, though there is not enough evidence to call it malware.

Confidence: 89%Severity: 58%
Audit Metadata
Analyzed At
Sep 14, 2026, 04:14 AM
Package URL
pkg:socket/skills-sh/nexscope-ai%2Fnexscope-ecommerce-skills%2Fecommerce-amazon-product-history%2F@0caa8fdc72efeafab24db4d65ff80f9f6da2e5a4ea1907cee95fbd4521363641
Security Audit — socket — ecommerce-amazon-product-history