stripe

Warn

Audited by Socket on Mar 23, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The core Stripe integration behavior is largely coherent and uses official channels, but the skill's autonomous execution, optional Stripe CLI use, telemetry writes outside the repo, and prompts to run additional skills make its operational footprint broader than a narrowly scoped integration guide. No strong evidence of malicious intent or credential harvesting was found.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
Mar 23, 2026, 11:04 AM
Package URL
pkg:socket/skills-sh/tinh2%2Fskills-hub-registry%2Fstripe%2F@43cf50c97ab175921fbe80447027ef5af5d14753
Security Audit — socket — stripe