deepgram-upgrade-migration

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill is coherently aligned with its stated purpose of guiding and executing Deepgram SDK/model/API migrations, including validation and rollback. It uses standard, reputable data sources (Deepgram and GitHub) and relies on environment-based credentials rather than reading sensitive local files. There are no evident credential harvesting, malicious download/execution patterns, or unauthorized data exfiltration. Overall risk is low to moderate (benign with cautious monitoring) given the presence of shell-based tooling calls (curl, npm) and the potential for automation to misuse these in untrusted contexts, but within intended use remains appropriate.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 01:51 AM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fdeepgram-upgrade-migration%2F@4af16441ef4df24bf6711afe2a46a38a558d1116