app-store-screenshots-generator

Warn

Audited by Socket on Mar 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The functional scope is coherent for generating App Store screenshots, and the shown code stays local without credential or data-exfiltration behavior. The main concern is install trust: the skill is published as `ara.so` but instructs installation of a third-party GitHub skill repo (`ParthJadhav/app-store-screenshots`) via transitive skill installation, extending agent trust to an externally sourced, mutable repo with no pinning or clear publisher linkage.

Confidence: 89%Severity: 63%
Audit Metadata
Analyzed At
Mar 28, 2026, 01:43 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Ftrending-skills%2Fapp-store-screenshots-generator%2F@430f7c96bd747229736e2c973deae5e57de6b8bc