bank-statement-processing

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The core capability fits the stated purpose, and the primary network target is the official Wells Fargo domain, but this is a high-sensitivity financial automation skill that collects live bank credentials/OTP and exports derived data to SerenDB. The main concerns are trust gaps around the unshown pip dependencies, the CLI/documentation mismatch for Seren tooling, and the misleading 'read-only' claim despite filesystem and database writes. No clear evidence of credential theft or malicious exfiltration is present, so this is not confirmed malware, but it carries meaningful security risk.

Confidence: 81%Severity: 63%
Audit Metadata
Analyzed At
Mar 21, 2026, 02:45 AM
Package URL
pkg:socket/skills-sh/serenorg%2Fseren-skills%2Fbank-statement-processing%2F@1679db4c7e5d1f8f75d6831479604b7a95ea6ffb