brick
Warn
Audited by Socket on Apr 28, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is broadly coherent and uses an official npm-distributed Membrane CLI, so it does not look malicious. However, all Brick authentication and API access are funneled through Membrane as an intermediary rather than directly to Brick, and the Brick docs reference is inconsistent. This is a moderate trust and data-flow concern, not confirmed malware.
Confidence: 84%Severity: 52%
Audit Metadata