linkedin-executive-lead-search
Warn
Audited by Socket on Jul 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's lead-search purpose is plausible, but its footprint is enlarged by mandatory third-party BrowserAct dependencies, automatic transitive skill installation, and possible use of local browser cookies/session state. Data flow appears aligned to browsing LinkedIn rather than obvious credential theft, but the auto-install and delegated browser-control model make the trust boundary disproportionate for a simple lead-search helper.
Confidence: 88%Severity: 72%
Audit Metadata