firecrawl-migration-deep-dive
Warn
Audited by Socket on Mar 24, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the overall workflow is mostly consistent with a FireCrawl migration skill, but the documented SDK install path appears inconsistent with current official FireCrawl Node docs, creating moderate supply-chain uncertainty. The skill also grants broad kubectl powers for live rollout changes, which is operationally risky but aligned with migration/rollback tasks. No clear credential harvesting, covert behavior, or third-party exfiltration is present.
Confidence: 84%Severity: 52%
Audit Metadata