sales-wave

Fail

Audited by Socket on Apr 20, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
references/platform-guide.md

The Wave platform description depicts extensive data collection (audio, transcripts, biometric Voice ID) and broad external integration, with encryption claims but notable privacy and data-exposure risks. There is no evidence of malware or code-level backdoors, yet public data sharing, biometric data handling, and incomplete regulatory details pose non-trivial security/privacy risks that warrant thorough controls, explicit consent, data-retention policies, and robust API/webhook security. Treat as moderate risk pending detailed policy and architectural validations.

Confidence: 98%
Audit Metadata
Analyzed At
Apr 20, 2026, 06:39 PM
Package URL
pkg:socket/skills-sh/sales-skills%2Fsales%2Fsales-wave%2F@b5bf761172ce79d84a9b96431b3a9bf0b53cced9
Security Audit — socket — sales-wave