beanstalk
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core behavior mostly fits a Membrane-based Beanstalk integration, and the CLI install path is from the official npm registry, but the skill has a notable purpose mismatch in its description and routes authentication/API traffic through Membrane instead of directly to Beanstalk. That intermediary design is disclosed and may be legitimate, but it increases trust and data-flow risk beyond a direct official-service integration.
Confidence: 87%Severity: 58%
Audit Metadata