hubspot-leadgenius

Warn

Audited by Socket on Apr 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Overall suspicious rather than malicious. The skill largely matches its stated HubSpot/LeadGenius integration purpose and uses official-looking endpoints with ordinary PyPI dependencies, but it requests a high-privilege LeadGenius admin key for an undocumented 'rate-limit bypass' that appears disproportionate to a standard sync workflow.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Apr 18, 2026, 08:57 PM
Package URL
pkg:socket/skills-sh/thierryteisseire%2Fleadgenius-hubspot%2Fhubspot-leadgenius%2F@9893c06c9de4fcb6fdd1df538ececfbc2a0e649a