pachca-chats

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
references/export-chat-history.md

The export workflow is legitimate but carries notable data-exposure risk due to external webhook destinations. Improvements should include webhook request validation, payload signing, nonce usage, domain allowlisting, per-export access tokens, and robust auditing. Ensure secure transport and encryption for both webhook communications and the exported data, plus strict access control and error handling to prevent misassociation or unauthorized downloads.

Confidence: 75%Severity: 60%
Audit Metadata
Analyzed At
Mar 18, 2026, 03:26 PM
Package URL
pkg:socket/skills-sh/pachca%2Fopenapi%2Fpachca-chats%2F@4c185405fb12794eef6c4dbd2ab2e949e53329b7