pdf-ocr
Warn
Audited by Socket on Mar 3, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
No explicit malware or backdoor indicators were found in the provided documentation. The dominant risks are privacy and supply-chain: unspecified cloud endpoints and undocumented automatic model downloads create potential for accidental data/credential exfiltration or tampered model binaries. Treat the package as functionally benign but with moderate security risk until implementation details (API endpoints, TLS and auth patterns, model provenance and checksums, and retention policies) are published and verified.
Confidence: 75%Severity: 75%
Audit Metadata