vapi-calls

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Likely benign with meaningful operational risk: the skill is internally consistent with a Vapi outbound-calling purpose and appears to use official Vapi endpoints, not a suspicious proxy. The main concern is not malware but that it empowers an AI agent to autonomously place real phone calls to third parties with broad, minimally constrained scope; the unseen setup file adds a small trust gap.

Confidence: 87%Severity: 69%
Audit Metadata
Analyzed At
Mar 31, 2026, 11:01 PM
Package URL
pkg:socket/skills-sh/TechNickAI%2Fopenclaw-config%2Fvapi-calls%2F@f141c89d73388981bbd5a5cf6172edc8b1897a56
Security Audit — socket — vapi-calls