churn-prevention

Warn

Audited by Socket on Feb 27, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

This is a documentation/skill file describing churn-prevention strategies and tooling integrations. It does not contain executable code, obfuscated payloads, or explicit malicious instructions. The primary security concerns are operational: the skill encourages reading a local context file and using third-party CLIs and APIs (Customer.io, Stripe, PostHog, etc.), which requires credential handling. If an agent or user blindly executes CLI commands or forwards credentials to third-party tools without verification, there is a credible credential-forwarding and autonomy risk. There are no download-execute chains, hardcoded secrets, or network endpoints under attacker control present in the content. Overall the content is functionally appropriate for its purpose but would become high-risk if combined with autonomous command execution or careless credential handling.

Confidence: 80%Severity: 55%
Audit Metadata
Analyzed At
Feb 27, 2026, 05:45 PM
Package URL
pkg:socket/skills-sh/science-of-people%2Fmarketingskills%2Fchurn-prevention%2F@23877351309c68bf5c0965af2a9d8fb614986e8a