apify-public-registries

Warn

Audited by Socket on Jun 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is broadly coherent for public-registry lookup, but it expands trust by routing some searches and Apify credentials through third-party hosted actors and an additional mcpc CLI path. Official same-org Apify CLI installation keeps this below malicious, yet the indirect data flow and scraping-based fallbacks create medium security risk.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
Jun 13, 2026, 12:41 PM
Package URL
pkg:socket/skills-sh/apify%2Fawesome-skills%2Fapify-public-registries%2F@0be05a96f3fa2bbaef128ce0ffadb076a01884b5ee9f30562b770a0b1a6e0d2f
Security Audit — socket — apify-public-registries