llm-intelligent-public-opinion-analytics

Warn

Audited by Socket on Oct 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The stated purpose matches crawling, analysis, and alerting, but the trust chain is weak: a skill published by ara.so instructs execution of an unrelated third-party GitHub project with unpinned dependencies and then feeds it multiple sensitive credentials. Data flows are broadly consistent with the analytics use case, but the external repo provenance and configurable third-party API routing make the footprint higher risk than a normal documentation skill.

Confidence: 91%Severity: 79%
Audit Metadata
Analyzed At
Oct 1, 2026, 01:37 PM
Package URL
pkg:socket/skills-sh/reason-machines%2Fdata-skills%2Fllm-intelligent-public-opinion-analytics%2F@a8bf1e416186ea908cb3c78795024f1169d7279d5e59b0fbe6e53ab695b3b536
Security Audit — socket — llm-intelligent-public-opinion-analytics