clay-to-deepline

Warn

Audited by Socket on Apr 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's purpose is coherent, but its actual footprint is high-risk: it relies on a browser session cookie, acknowledges that sensitive command content can reach Deepline telemetry, forwards data into third-party Deepline/provider tooling, and depends on an official but still risky curl|bash installer. This looks more like an over-privileged migration/integration skill than confirmed malware.

Confidence: 90%Severity: 84%
Audit Metadata
Analyzed At
Apr 5, 2026, 09:53 PM
Package URL
pkg:socket/skills-sh/getaero-io%2Fgtm-eng-skills%2Fclay-to-deepline%2F@2a83d88286e13b35d7f8038e336ff1aafe6a7ae2