inbound-lead-enrichment

Warn

Audited by Socket on Mar 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core enrichment and CRM lookup functions match the stated purpose, and there is no explicit malicious payload or installer chain. The main risks are third-party Apify actor use for LinkedIn scraping, possible credential/session forwarding, broad external-content ingestion with write capabilities, and autonomous CRM/Supabase updates without clear user confirmation.

Confidence: 83%Severity: 62%
Audit Metadata
Analyzed At
Mar 28, 2026, 11:42 AM
Package URL
pkg:socket/skills-sh/nikiandr%2Fgoose-skills%2Finbound-lead-enrichment%2F@a0b00e99fba09c2936d508ea5dc22cfcf6ab0b39