email-daily-summary
Warn
Audited by Socket on Feb 14, 2026
1 alert found:
SecuritySecurity_meta.json
MEDIUMSecurityMEDIUM
_meta.json
Definitive determination of malicious behavior is impossible from the provided artifact because no implementation code was included. However, the declared functionality (automatic login to multiple email providers and access to inbox contents) is high risk: if implemented without strict safeguards it could enable credential harvesting, mailbox exfiltration, or other privacy violations. Treat this package as high-risk until a full source and runtime audit is performed; prioritize confirming use of OAuth, secure token storage, absence of third-party exfiltration endpoints, and minimal scopes.
Confidence: 75%Severity: 78%
Audit Metadata