sales-third-party

Fail

Audited by Snyk on Apr 17, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.70). These links are pages on a third‑party "skills.sh" catalog pointing to many individual authors and instructing use of npx to install/run unvetted packages — not direct executables, but installing/running arbitrary third‑party npm packages or scripts from personal repos poses a real risk of malware or unwanted code execution.

Issues (1)

E005
CRITICAL

Suspicious download URL detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Apr 17, 2026, 06:11 PM
Issues
1