prisma-postgres

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill demonstrates coherent purpose-capability alignment: it provides a Prisma Postgres management API client using official Prisma endpoints and a brokered authentication token. Install sources are standard (environment-provided token; HTTPS API). Data flows involve legitimate API calls with standard authorization headers and local formatting of responses. No suspicious credential harvesting, file system access beyond temporary JSON files, or unintended data exfiltration is evident. Overall, the footprint is benign and proportionate to the stated purpose, with moderate visibility and control over credentials via the environment variable token.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 03:22 PM
Package URL
pkg:socket/skills-sh/vm0-ai%2Fvm0-skills%2Fprisma-postgres%2F@6a379fce57c91a24b33e77f95261796127f10749