paddleocr-doc-parsing
Warn
Audited by Socket on Mar 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated OCR purpose is plausible, but the skill asks users to provide raw credentials in chat and routes documents to a user-configured API URL via unseen local scripts. With no verified official endpoint binding or script transparency, credential and document flows are insufficiently trustworthy for a benign classification.
Confidence: 82%Severity: 74%
Audit Metadata