sales-jotform

Warn

Audited by Socket on Apr 20, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The core Jotform help behavior is benign and aligned, but the embedded instruction to install a separate third-party sales skill is a disproportionate transitive trust risk. No direct credential theft or malicious exfiltration is shown, yet the cross-org `npx skills add` path materially increases security risk.

Confidence: 87%Severity: 63%
Audit Metadata
Analyzed At
Apr 20, 2026, 06:36 PM
Package URL
pkg:socket/skills-sh/sales-skills%2Fsales%2Fsales-jotform%2F@0fc3669be50984d8913342f237b8110e01b5c951