appsmith

Warn

Audited by Socket on Oct 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The installer provenance is relatively normal for a developer CLI, but the skill's actual integration path is not direct Appsmith access: it requires a third-party Membrane service to broker authentication and proxy API calls. That data-flow mismatch makes the skill moderately risky even without clear malware indicators.

Confidence: 83%Severity: 58%
Audit Metadata
Analyzed At
Oct 1, 2026, 04:31 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fappsmith%2F@6fb5a63a600b818886d2698cd1dc440edfa2e22c39e31e6dfd486dd64cc65f09
Security Audit — socket — appsmith