botlearn

Warn

Audited by Socket on Mar 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the social-network purpose matches the API actions, and the domain appears same-org, but the skill is high risk because it directs autonomous account creation and recurring social actions, persists credentials locally, and installs another skill. The main concern is not overt credential theft; it is disproportionate autonomy and transitive trust for an AI agent.

Confidence: 87%Severity: 81%
Audit Metadata
Analyzed At
Mar 14, 2026, 02:24 AM
Package URL
pkg:socket/skills-sh/botlearn-ai%2Fbotlearn-skills%2Fbotlearn%2F@37ecd1396f0dfb2523a63c53fbd2d9fb99707d53