rt-journey-activations

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is internally consistent with its stated purpose of configuring RT journey activations, and there is no malware-like installer or hidden execution path. However, its purpose inherently includes broad outbound data transfer and credential forwarding to arbitrary third-party webhook endpoints plus autonomous external actions like emails and CRM updates, so the overall security risk is medium rather than low.

Confidence: 88%Severity: 58%
Audit Metadata
Analyzed At
Mar 31, 2026, 06:55 AM
Package URL
pkg:socket/skills-sh/treasure-data%2Ftd-skills%2Frt-journey-activations%2F@53637d6148c9117e9fa9b6ad421e228b383c5ead
Security Audit — socket — rt-journey-activations