podcast

Warn

Audited by Socket on May 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s stated purpose and capabilities mostly align, and there are no clear exfiltration, stealth, or offensive-action instructions. However, the core workflow depends on an externally installed CLI whose publisher, package provenance, and backend endpoints were not verifiably tied to an official VoxFlow source from the provided evidence. That makes the install trust and data-flow integrity insufficiently verified for a low-risk classification.

Confidence: 80%Severity: 72%
Audit Metadata
Analyzed At
May 17, 2026, 11:51 PM
Package URL
pkg:socket/skills-sh/VoxFlowStudio%2Fskills%2Fpodcast%2F@6346833207a3d2dd47387da9710928262294516e
Security Audit — socket — podcast