website-builder-pipeline

Warn

Audited by Socket on Apr 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s broad footprint is mostly consistent with an end-to-end website builder, but it materially increases risk through transitive skill installation, third-party/unpinned install paths, broad credential handling, and ingestion of untrusted web content while retaining write/exec/deploy powers. Data flows largely match stated vendors, so this is not confirmed malware, but it is a high-trust automation skill that should be reviewed carefully before use.

Confidence: 85%Severity: 73%
Audit Metadata
Analyzed At
Apr 5, 2026, 07:40 AM
Package URL
pkg:socket/skills-sh/joshpocock%2Fstride-website-builder-pipeline%2Fwebsite-builder-pipeline%2F@02424306aaf9790f05fd8d4c87ded9a0897a1133