linkedin-profile-post-scraper

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's purpose and capability broadly align, and it uses official Apify APIs with a proportionate credential. Risk comes from relying on a third-party hosted Apify actor for the core scrape, which means LinkedIn targets and results are processed by external code outside the skill publisher's control; combined with unpinned dependency install and optional CLI-token handling, this is medium security risk rather than clear malware.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
Mar 29, 2026, 05:18 PM
Package URL
pkg:socket/skills-sh/nikiandr%2Fgoose-skills%2Flinkedin-profile-post-scraper%2F@5f0ac8eb9a5b1f0c26b86ee67a3296ffe1636654