extract
Fail
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill coherently implements its stated purpose: it accepts user URLs, uses a user-provided API key to call an external extraction service, and returns extracted content. Security concerns are limited to standard API key handling and external data flow to a third-party service. No suspicious download/execute patterns or credential harvesting patterns are evident. Overall, the footprint is benign with moderate data-flow risk due to external API integration and local API key handling.
Confidence: 98%
Audit Metadata