api

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's stated purpose is Apollo API access, but all requests and credentials are routed through Seren's proxy instead of Apollo's official API. Capabilities match the general sales-intelligence purpose, yet the data flow is not direct and introduces third-party credential and data exposure that is not proportionate to a plain Apollo integration.

Confidence: 92%Severity: 76%
Audit Metadata
Analyzed At
Mar 21, 2026, 02:45 AM
Package URL
pkg:socket/skills-sh/serenorg%2Fseren-skills%2Fapi%2F@196283d4c8fa2fda5c385a22a34f8d31656cf339