goals-and-kpis

Warn

Audited by Socket on Mar 9, 2026

1 alert found:

Anomaly
AnomalyLOW
README.md

The fragment lacks in-code malicious activity but introduces typical OSS supply-chain risk via remote installer scripts (curl | bash). The documentation is otherwise benign. Recommend prioritizing safer installation patterns (npm install from trusted registry, verify installer integrity) and auditing the remote install script before use.

Confidence: 65%Severity: 62%
Audit Metadata
Analyzed At
Mar 9, 2026, 02:03 PM
Package URL
pkg:socket/skills-sh/thierryteisseire%2Fbusiness_skills%2Fgoals-and-kpis%2F@6a853ca7f0b722c8dfe5b83b17bb28e10e1a2b02