create-payment-credential

Warn

Audited by Socket on Sep 26, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is coherent with its stated purpose and uses an official Stripe/Link CLI, so it is not malware and not a deceptive credential harvester. However, it is inherently high risk because it authorizes an AI agent to make real purchases, handle sensitive payment credentials, automate checkout interactions, and send agent-only reports; classify as SUSPICIOUS/high-risk but not malicious.

Confidence: 88%Severity: 72%
Audit Metadata
Analyzed At
Sep 26, 2026, 02:25 PM
Package URL
pkg:socket/skills-sh/stripe%2Flink-cli%2Fcreate-payment-credential%2F@797375964fbe043a0b4c4031b72c7e26fdd6bdca8737d22dac21700fbe531008
Security Audit — socket — create-payment-credential