web-research

Warn

Audited by Socket on Apr 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the research/scraping purpose is coherent, but the actual footprint relies on an unpinned external CLI and routes all requests through stableenrich.dev rather than official Exa/Firecrawl endpoints. This creates medium-high supply-chain, intermediary data-flow, and prompt-injection risk without evidence of confirmed malware.

Confidence: 84%Severity: 68%
Audit Metadata
Analyzed At
Apr 4, 2026, 10:13 AM
Package URL
pkg:socket/skills-sh/Merit-Systems%2Fagentcash-skills%2Fweb-research%2F@1eed19b0bb50969a9520093210d21b50d0e92184