spark-recipe-invitation-manager

Warn

Audited by Socket on Apr 30, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the functional scope is coherent and read-only, but the skill depends on an unverified `spark` CLI and an unseen `use-spark` base skill. No direct credential harvesting or exfiltration is evident here, yet the required execution surface is not publicly verifiable, so the overall risk remains high on supply-chain/trust grounds rather than confirmed malicious behavior.

Confidence: 84%Severity: 72%
Audit Metadata
Analyzed At
Apr 30, 2026, 11:20 AM
Package URL
pkg:socket/skills-sh/readdle%2Fspark-cli-skills%2Fspark-recipe-invitation-manager%2F@03d680f44241cc8afcdf2845276af811e6ba71f2
Security Audit — socket — spark-recipe-invitation-manager