sales-producthunt
Warn
Audited by Socket on Apr 9, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core Product Hunt guidance is coherent and the API references are official, but the skill includes transitive installation commands whose source (`sales-skills/sales`) does not match the claimed Product Hunt GitHub org. That publisher mismatch and delegated trust raise medium supply-chain risk, though there is no evidence of credential theft, exfiltration, or direct malicious behavior in this skill text.
Confidence: 91%Severity: 52%
Audit Metadata