uipath-coded-apps

Warn

Audited by Socket on Mar 24, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's capabilities mostly fit its stated UiPath deployment purpose, but the install/provenance story for the core `uip` CLI is internally inconsistent with the provided official evidence. Because the skill forwards auth-bearing environment data and performs real deployment actions through an unverified CLI path, the overall risk is medium-high despite no clear evidence of deliberate malware or third-party exfiltration.

Confidence: 86%Severity: 74%
Audit Metadata
Analyzed At
Mar 24, 2026, 04:11 PM
Package URL
pkg:socket/skills-sh/uipath%2Fskills%2Fuipath-coded-apps%2F@04c2b6da407e69828a58132340518c217123c6b2