social-login

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill content is coherently aligned with its stated purpose of implementing OAuth2-based social login and binding. It uses standard patterns (state CSRF protection, authorization code flow, token exchange, user info retrieval, and binding table) and keeps secrets server-side. No evident malicious data exfiltration or suspicious external dependencies are described. Overall risk is low to moderate (benign) given proper secure handling and logging precautions, with a notable emphasis on standard security practices for OAuth flows.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 10:12 AM
Package URL
pkg:socket/skills-sh/xu-cell%2Fai-engineering-init%2Fsocial-login%2F@a9f65979ec9182bf01500cb64ab3448f9b9dd06a