bearer

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is functionally coherent, but it routes Bearer authentication and API traffic through Membrane infrastructure instead of directly to Bearer. The CLI install path is reasonably legitimate, yet the third-party proxy model and server-side credential handling create a medium security risk disproportionate to a simple Bearer integration.

Confidence: 82%Severity: 58%
Audit Metadata
Analyzed At
Apr 29, 2026, 08:37 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fbearer%2F@37b1a510b12584280e1af08467fc47cdf728388a