pain-language-engagers

Warn

Audited by Socket on Mar 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill’s purpose matches lead-generation, but its execution trust and data flow are weak because it forwards a single Apify token and user/scraped data to multiple unrelated community-maintained actors with no version pinning. This is not confirmed malware, but it is a high-risk third-party credential-forwarding and supply-chain design.

Confidence: 86%Severity: 78%
Audit Metadata
Analyzed At
Mar 14, 2026, 06:04 PM
Package URL
pkg:socket/skills-sh/athina-ai%2Fgoose-skills%2Fpain-language-engagers%2F@9033d8e516338983ea190e35e0783705c4b5608f