sn-search-social-en

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s basic purpose is coherent, and YouTube API usage looks normal, but Twitter/X search is routed through TikHub rather than official X APIs. That third-party credential and data flow is inconsistent with a straightforward platform-search skill and raises material trust and exfiltration concerns. Missing requirements.txt and unspecified Reddit endpoints add uncertainty, but there is not enough evidence for confirmed malware.

Confidence: 87%Severity: 71%
Audit Metadata
Analyzed At
Apr 29, 2026, 09:39 AM
Package URL
pkg:socket/skills-sh/OpenSenseNova%2FSenseNova-Skills%2Fsn-search-social-en%2F@e458e9dee38806b19d34f45af8cea3a002a14e9a