freshworks-publish-skill

Warn

Audited by Socket on Feb 26, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is purpose-aligned: it automates packing and submission guidance for Freshworks apps and operates autonomously as described. It relies on official tooling (fdk) and local project data, with normal outputs and checks. The primary security concerns arise from the autonomous execution model and potential future portal integrations that could involve credentials or external API calls. In its current form, the footprint is coherent with its stated purpose but warrants caution due to unconditional execution and potential extension to portal interactions. Overall risk is moderate with high suspicion if portal/API integrations are added without proper safeguards.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 26, 2026, 01:36 PM
Package URL
pkg:socket/skills-sh/freshworks-developers%2Fmarketplace%2Ffreshworks-publish-skill%2F@2f36683b450fc1b2a933b87ff9a92cc9eb3ce84b