pdf-manipulation

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The overall assessment is that the PDF manipulation skill and its documentation are benign and aligned with a legitimate document automation use case. While the breadth of tooling introduces dependency-supply-chain considerations, there is no evident malicious behavior or data exfiltration in the code samples themselves. Recommend careful dependency pinning, integrity checks, and explicit input/output hygiene when deploying in production.

Confidence: 75%Severity: 50%
Audit Metadata
Analyzed At
Mar 1, 2026, 04:38 AM
Package URL
pkg:socket/skills-sh/besoeasy%2Fopen-skills%2Fpdf-manipulation%2F@34483ef34a411c5a216ebbf2af340d257a7020d8