Lemon Squeezy Automation

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's capabilities fit its Lemon Squeezy management purpose, but credentials and business data are routed through a third-party MCP service (Composio/Rube) instead of directly to Lemon Squeezy. This is not strong evidence of malware, yet the intermediary credential and data flow creates meaningful trust and privacy risk.

Confidence: 85%Severity: 64%
Audit Metadata
Analyzed At
Mar 29, 2026, 04:37 AM
Package URL
pkg:socket/skills-sh/ranbot-ai%2Fawesome-skills%2Flemon-squeezy-automation%2F@1980f16497a147bb2cc9e8a2cf73d22d5f2fe83d