skanetrafiken

Warn

Audited by Socket on Feb 22, 2026

1 alert found:

Anomaly
AnomalyLOW
README.md

The fragment is documentation describing installation and runtime behavior for a Skånetrafiken Trip Planner Skill. No executable code or secrets are present in the provided text, indicating low risk at this fragment level. The primary security risk lies in the unseen implementation scripts (setup.sh, search-location.sh, journey.sh) and the external API data sources; a thorough review should target those components, including dependency integrity, input validation, and installation integrity (prefer signed packages, verify hashes, and restrict installation sources). Overall, this fragment shows low inherent risk but moderate supply-chain risk if downstream scripts or dependencies are compromised.

Confidence: 65%Severity: 58%
Audit Metadata
Analyzed At
Feb 22, 2026, 02:54 PM
Package URL
pkg:socket/skills-sh/rezkam%2Fboring-but-good%2Fskanetrafiken%2F@0bead5fb389cb8493b28a92a544f3a9bb9d24683