product-hunt-launch

Warn

Audited by Socket on Apr 9, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core Product Hunt guidance is benign, but the skill's footprint is larger than necessary. It requires a same-org external CLI installed via curl|sh, routes prompts/searches through that CLI to hosted apps, grants broad bash access, and encourages transitive skill installation. These are moderate trust and scope concerns rather than confirmed malicious behavior.

Confidence: 85%Severity: 68%
Audit Metadata
Analyzed At
Apr 9, 2026, 08:03 AM
Package URL
pkg:socket/skills-sh/tool-belt%2Fskills%2Fproduct-hunt-launch%2F@5bf9c888393edbf63782a363814567e1aad368ae