sales-producthunt

Warn

Audited by Socket on Apr 9, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core Product Hunt guidance is coherent and the API references are official, but the skill includes transitive installation commands whose source (`sales-skills/sales`) does not match the claimed Product Hunt GitHub org. That publisher mismatch and delegated trust raise medium supply-chain risk, though there is no evidence of credential theft, exfiltration, or direct malicious behavior in this skill text.

Confidence: 91%Severity: 52%
Audit Metadata
Analyzed At
Apr 9, 2026, 10:15 AM
Package URL
pkg:socket/skills-sh/sales-skills%2Fsales%2Fsales-producthunt%2F@9fc46fcbba24e1b2403662b3dd23ac484b1099ac