vinted-marketplace-scraper

Warn

Audited by Socket on Jul 20, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the stated scraping purpose is coherent, but the skill’s automatic no-confirmation installation of an external skill/CLI introduces transitive trust and moderate execution risk. Evidence suggests the dependency source is official BrowserAct infrastructure, so this looks more like a risky dependency model than confirmed malicious behavior.

Confidence: 84%Severity: 56%
Audit Metadata
Analyzed At
Jul 20, 2026, 04:20 AM
Package URL
pkg:socket/skills-sh/sam6dvpte34%2Fecommerce-skill%2Fvinted-marketplace-scraper%2F@e6a994551bb421f5012263207568b24caeac2f1d66e55267f520479a8d72046f
Security Audit — socket — vinted-marketplace-scraper