amplitude
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s stated purpose is coherent, and the CLI install path is from an official registry, but all authentication and Amplitude operations are routed through Membrane rather than official Amplitude APIs. That intermediary credential/data flow raises medium security risk without enough evidence to call it malicious.
Confidence: 84%Severity: 58%
Audit Metadata