jp-executor

Warn

Audited by Socket on Jul 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is largely coherent for a payment-integration executor and routes data toward same-org Juspay infrastructure, so it is not fundamentally malicious. Risk remains medium because it handles credentials, may forward them to an external MCP server, can trigger real service-side changes, and recommends a second skill, expanding the trust boundary.

Confidence: 82%Severity: 58%
Audit Metadata
Analyzed At
Jul 12, 2026, 09:40 AM
Package URL
pkg:socket/skills-sh/sahyll%2Fjuspay-skills%2Fjp-executor%2F@ca5b11def7bd208259ef5a7269705ae49690c923ddc3566e361e5313cabe1f28
Security Audit — socket — jp-executor