Warn
Audited by Socket on Aug 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally consistent and uses a verifiable npm-distributed CLI from the same vendor, so it does not look like disguised malware. However, its core model routes credentials, LinkedIn activity, and extracted data through a non-LinkedIn third-party cloud browser service and enables autonomous outbound actions with public or account-level consequences. That combination makes it higher risk than a read-only integration, even though the documentation warns to obtain user approval before writes.
Confidence: 90%Severity: 71%
Audit Metadata