acelle-mail

Warn

Audited by Socket on Apr 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's Acelle-management purpose is plausible, and the CLI install source is broadly legitimate, but the core integration depends on Membrane as an intermediary for authentication, token refresh, and proxied API traffic rather than talking directly to the user's self-hosted Acelle instance. That third-party routing and broad action surface make the footprint riskier than a direct Acelle client, though not clearly malicious.

Confidence: 86%Severity: 68%
Audit Metadata
Analyzed At
Apr 28, 2026, 05:26 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Facelle-mail%2F@0f1b700ca4a4e3ff098ede00d2dd2f3ba9e33c32