linkedin-automation

Warn

Audited by Socket on Mar 11, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Overall, the skill appears Benign with elevated Suspicious signals due to the dependency on an external MCP server for tool schemas and the handling of OAuth tokens/URNs across multiple LinkedIn actions. No explicit payloads or unverifiable binaries are evident, but the external dependency and credential flows warrant careful review of token handling, scope management, and explicit user consent controls for automated actions. Recommend ensuring explicit per-action user approvals or clearly defined automation boundaries, validate MCP trustworthiness, and implement secure token storage and minimum necessary scopes.

Confidence: 58%Severity: 52%
Audit Metadata
Analyzed At
Mar 11, 2026, 09:11 AM
Package URL
pkg:socket/skills-sh/manojbajaj95%2Fgtm-skills%2Flinkedin-automation%2F@36724b0536db23fcd1591dc8e9c9b65da901814e