firecrawl-migration-deep-dive

Warn

Audited by Socket on Mar 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the overall workflow is mostly consistent with a FireCrawl migration skill, but the documented SDK install path appears inconsistent with current official FireCrawl Node docs, creating moderate supply-chain uncertainty. The skill also grants broad kubectl powers for live rollout changes, which is operationally risky but aligned with migration/rollback tasks. No clear credential harvesting, covert behavior, or third-party exfiltration is present.

Confidence: 84%Severity: 52%
Audit Metadata
Analyzed At
Mar 24, 2026, 05:07 PM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Ffirecrawl-migration-deep-dive%2F@65cffa01d6fd299c36e0e637a995f5b7e1b88f10