invoice-template

Fail

Audited by Socket on Mar 9, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill is coherently scoped to generate invoices from structured data using a templated approach via common Python tooling (ReportLab, WeasyPrint, Jinja2) and an MCP-enabled workflow. Data flows are confined to input data -> template processing -> PDF/HTML output, with no evident credential handling or external data exfiltration. Given the explicit usage of standard package registries and absence of credential exposure, the threat posture is low to moderate and aligned with its stated purpose. There are no red flags indicating malicious activity or misuse beyond normal supply-chain considerations for dependencies.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 9, 2026, 08:22 AM
Package URL
pkg:socket/skills-sh/claude-office-skills%2Fskills%2Finvoice-template%2F@72f5b38e73335d307dfa296db0a3c7f50e33d8a8