apify

Warn

Audited by Socket on May 3, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is coherent with its stated Apify-management purpose, and the CLI install appears vendor-associated and officially documented. However, it routes authentication and API access through Membrane instead of Apify directly, creating a meaningful third-party credential and data handling risk. This looks like a legitimate integration wrapper with medium security risk, not confirmed malware.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
May 3, 2026, 01:37 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fapify%2F@5fc4df81f8f9e9efa7980a71a5165a53aea65ccd
Security Audit — socket — apify