industry-research

Warn

Audited by Socket on Apr 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's capabilities largely match its music-research purpose and its credential/data flow appears to target the vendor's official domains, but the undocumented provenance of the required `recoup` CLI prevents a benign classification. Main risk is moderate supply-chain uncertainty plus prompt-injection exposure from researching arbitrary web content.

Confidence: 79%Severity: 58%
Audit Metadata
Analyzed At
Apr 14, 2026, 03:05 AM
Package URL
pkg:socket/skills-sh/recoupable%2Fskills%2Findustry-research%2F@eb086719018b0d88499b391d8273f4496e9390b2