adk-frontend

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Anomaly
AnomalyLOW
references/project-setup.md

No clear malicious behavior or supply-chain attack is present. The material is setup documentation with a legitimate Botpress API integration. However, the frontend PAT testing pattern is a significant credential-handling risk because a PAT supplied to browser JavaScript is exposed to the user environment and may be leaked through logs or client compromise. The example should be restricted to local testing with a minimally privileged token and replaced in production with a secure server-side authentication flow.

Confidence: 98%Severity: 58%
Audit Metadata
Analyzed At
Sep 14, 2026, 05:50 PM
Package URL
pkg:socket/skills-sh/botpress%2Fskills%2Fadk-frontend%2F@5cddcdf9b3d1ca108f8c213a0523a13f6cd27d42f8445e875f4b3b9c387b0747
Security Audit — socket — adk-frontend