booking-notify

Warn

Audited by Socket on May 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the notification purpose is plausible and the requested credentials are mostly proportionate, but the actual execution path depends on unpinned local code from another plugin, a nonstandard local Cal.com binary, and an optional third-party webhook relay. The main concern is supply-chain and intermediary trust, not confirmed malware.

Confidence: 84%Severity: 74%
Audit Metadata
Analyzed At
May 28, 2026, 06:04 AM
Package URL
pkg:socket/skills-sh/terrylica%2Fcc-skills%2Fbooking-notify%2F@286e799e8cbf373f6b044d61d4fd3c29dabcf292
Security Audit — socket — booking-notify