superx

Warn

Audited by Socket on Sep 19, 2026

1 alert found:

Anomaly
AnomalyLOW
references/skills/audience-export/card.json

No direct malware or executable supply-chain attack is evident in this metadata. The feature is designed for bulk harvesting and export of public engagement and user-profile data, including DM availability, creating a moderate privacy and data-governance risk. Further review of the implementation would be needed to determine whether access controls, platform authorization, rate limiting, consent, and retention safeguards are enforced.

Confidence: 98%Severity: 58%
Audit Metadata
Analyzed At
Sep 19, 2026, 07:23 PM
Package URL
pkg:socket/skills-sh/superx-so%2Fsuperx-agent%2Fsuperx%2F@0346c78d16ef4e53208d55bea0e7464807d08965820d46d1383ab8c79c6de16f
Security Audit — socket — superx