evernote-enterprise-rbac

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Evernote Enterprise RBAC skill presents a coherent and proportionate footprint for implementing role-based access control in a multi-tenant Evernote integration. Access control is enforced via RBACService and middleware, with persistence in relational tables and integration with Evernote Business APIs. The security posture is reasonable, with parameterized queries and standard token-based API access; explicit secret-management practices and rotation are not shown and should be clarified in deployment guidance. No evidence of download/executable supply-chain risks or autonomous real-world actions is present. Overall, the skill is BENIGN with some areas to tighten credential handling and explicit security controls.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 06:04 PM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fevernote-enterprise-rbac%2F@59886cb4b3c435416fab401e34373993f469a491