Directus AI Assistant Integration

Fail

Audited by Socket on Feb 15, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The fragment appears coherent and aligned with its stated purpose as a Directus AI assistant integration. It demonstrates appropriate data flows to AI providers, vector databases, and internal storage, with standard safeguards (moderation, content generation, streaming). No hardcoded credentials; usage of environment variables is consistent with common practices. While the breadth of providers and data flows increases integration risk surface (multiple external endpoints, data in motion), the footprint is proportionate to the stated goal of a feature-rich AI assistant. Recommend standard security reviews (data retention, access controls, auditing, rate limits) and ensure explicit user consent and data handling policies for any persisted conversations and embeddings.

Confidence: 70%Severity: 60%
Audit Metadata
Analyzed At
Feb 15, 2026, 09:50 PM
Package URL
pkg:socket/skills-sh/gumpen-app%2Fdirectapp%2Fdirectus-ai-assistant-integration%2F@b7c0b83d22fbd23b352b08fb44219722211ccf3e