commercetools-headless-commerce

Warn

Audited by Socket on Feb 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill/document is an implementation guide for Commercetools SDK usage and does not contain malware or supply-chain download-execute patterns. The capabilities and network flows align with the stated purpose. Primary risks are operational (credential exposure, log/response leakage, predicate injection) if developers mis-implement the guidance; these are noted by the document itself. Overall, no malicious behavior is present, but proper operational security controls must be applied when implementing.

Confidence: 80%Severity: 75%
Audit Metadata
Analyzed At
Feb 27, 2026, 07:35 PM
Package URL
pkg:socket/skills-sh/frontic%2Fskills%2Fcommercetools-headless-commerce%2F@94bda44128723e61cd219642428f600cb8022ba3