botmaker
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s capabilities broadly match its stated Botmaker-management purpose, and the CLI install path appears official and proportionate. However, authentication and API traffic are mediated through Membrane rather than direct Botmaker endpoints, and the skill enables externally visible actions like sending messages; this creates medium risk from third-party credential/data routing and autonomous action potential, but not clear malicious intent.
Confidence: 87%Severity: 56%
Audit Metadata