linkedin-network-connection-scraper

Warn

Audited by Socket on Jul 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's browser-scraping purpose is plausible, but it expands into broader lead-generation, auto-installs a transitive dependency without confirmation, and relies on a third-party browser automation stack that can access authenticated browser state and possibly cloud services. Same-org install evidence reduces malware confidence, but the autonomy and session-access footprint are high for the stated task.

Confidence: 89%Severity: 74%
Audit Metadata
Analyzed At
Jul 20, 2026, 04:36 AM
Package URL
pkg:socket/skills-sh/sam6dvpte34%2Flead-generation-skill%2Flinkedin-network-connection-scraper%2F@b079b84f905f8a0f1221b4601c3776e37d644b3b16fb91984809d48f54331e86
Security Audit — socket — linkedin-network-connection-scraper