skill-share

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core capabilities fit the stated purpose, but Slack sharing is routed through the third-party Composio/Rube service, which manages OAuth credentials and receives message data. That makes the data flow less trustworthy than a direct Slack integration, and the dependency appears partly stale because Rube is discontinued. No clear malware indicators or hidden credential theft are shown, but the intermediary auth model and automatic external posting create medium security risk.

Confidence: 86%Severity: 56%
Audit Metadata
Analyzed At
Sep 15, 2026, 08:30 AM
Package URL
pkg:socket/skills-sh/composiohq%2Fawesome-claude-skills%2Fskill-share%2F@edc7981891c1b799215b3beab0e1226956f5a4324a9900cf853887aa0ea8fc61
Security Audit — socket — skill-share