pdf-ocr

Warn

Audited by Socket on Mar 3, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

No explicit malware or backdoor indicators were found in the provided documentation. The dominant risks are privacy and supply-chain: unspecified cloud endpoints and undocumented automatic model downloads create potential for accidental data/credential exfiltration or tampered model binaries. Treat the package as functionally benign but with moderate security risk until implementation details (API endpoints, TLS and auth patterns, model provenance and checksums, and retention policies) are published and verified.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 3, 2026, 06:57 AM
Package URL
pkg:socket/skills-sh/yejinlei%2Fpdf-ocr-skill%2Fpdf-ocr%2F@69b8d4e11a5f1f7e590e48eb74c2b9ecedca2ebd