customerio-core-feature
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's footprint is coherent with its stated purpose: it provides Customer.io core feature integrations via the official SDK, uses environment-provided credentials, and communicates with trusted endpoints. There are no evident supply-chain, credential-forwarding, or data-exfiltration patterns. Some minor concerns relate to input validation, error handling visibility, and data privacy governance, which are typical for integration code but should be addressed in implementation (e.g., input validation, retry strategies, and explicit data handling policies). Overall, the risk posture is benign with moderate operational considerations.
Confidence: 98%
Audit Metadata