prisma-postgres
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill demonstrates coherent purpose-capability alignment: it provides a Prisma Postgres management API client using official Prisma endpoints and a brokered authentication token. Install sources are standard (environment-provided token; HTTPS API). Data flows involve legitimate API calls with standard authorization headers and local formatting of responses. No suspicious credential harvesting, file system access beyond temporary JSON files, or unintended data exfiltration is evident. Overall, the footprint is benign and proportionate to the stated purpose, with moderate visibility and control over credentials via the environment variable token.
Confidence: 98%
Audit Metadata