paystack-subscriptions

Fail

Audited by Socket on Mar 8, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill's footprint is coherent with its described purpose: it handles subscription creation, querying, enabling/disabling, and card-update link management through Paystack APIs, using tokens that are standard for such workflows. Data flows are expected (customer IDs, plan codes, and tokens to Paystack). There are no unverifiable binaries, no silent credential harvesting, and no third-party data relays beyond the legitimate Paystack API. The main security considerations are safe handling of email_token/subscription_code and ensuring API keys or tokens used by paystackRequest are securely stored and restricted. Overall, the skill is BENIGN with MEDIUM-low risk due to credential sensitivity and standard API usage.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 8, 2026, 06:29 AM
Package URL
pkg:socket/skills-sh/rexedge%2Fpaystack%2Fpaystack-subscriptions%2F@bd99bb1101ad344516e7c881ad8a179d370115a8