linkedin-company-employees-scraper

Warn

Audited by Socket on Jul 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose matches lead scraping, but the footprint is broader than a simple data collection skill because it auto-installs and delegates to another Skill/CLI without separate approval. Supply-chain provenance for BrowserAct is partly verifiable and lowers malware concerns, yet the transitive install, live browser automation, and untrusted web-content processing make the overall skill medium-high risk.

Confidence: 87%Severity: 72%
Audit Metadata
Analyzed At
Jul 20, 2026, 04:16 AM
Package URL
pkg:socket/skills-sh/sam6dvpte34%2Flead-generation-skill%2Flinkedin-company-employees-scraper%2F@fa3d6dfc2c68c61978f0c31de3c9c7491a926d139a23ff8df1f56e21edc173f6
Security Audit — socket — linkedin-company-employees-scraper