deepapi
Warn
Audited by Socket on Aug 6, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is internally coherent and avoids installer/binary trust traps, but it has medium risk because it forwards a powerful API key and potentially sensitive user content to a beta third-party service that can scrape, research, generate images, and send email. The explicit approval and draft safeguards help, yet the broad scope and vendor-side data handling make this higher risk than a narrow single-purpose API skill.
Confidence: 84%Severity: 56%
Audit Metadata