linkedin-skill
Fail
Audited by Socket on Feb 27, 2026
1 alert found:
Obfuscated FileObfuscated Filelinkedin_skill.py
HIGHObfuscated FileHIGH
linkedin_skill.py
The code is a functional LinkedIn OAuth CLI tool that authenticates users and interacts with LinkedIn APIs. It does not exhibit explicit malicious behavior such as data exfiltration, backdoors, or cryptomining. However, it handles sensitive credentials/tokens on disk, performs OAuth flows via a local HTTP server, and makes authenticated API calls. The overall risk is moderate due to local credential storage and potential exposure if the host is compromised. There is no evidence of obfuscation or malware in the fragment; the design relies on user-provided credentials and user interaction for first-time setup.
Confidence: 98%
Audit Metadata