freshworks-publish-skill
Warn
Audited by Socket on Feb 26, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill is purpose-aligned: it automates packing and submission guidance for Freshworks apps and operates autonomously as described. It relies on official tooling (fdk) and local project data, with normal outputs and checks. The primary security concerns arise from the autonomous execution model and potential future portal integrations that could involve credentials or external API calls. In its current form, the footprint is coherent with its stated purpose but warrants caution due to unconditional execution and potential extension to portal interactions. Overall risk is moderate with high suspicion if portal/API integrations are added without proper safeguards.
Confidence: 75%Severity: 75%
Audit Metadata