ceipal

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill is coherent in purpose and uses an official Membrane CLI from npm, so it does not look malicious. However, it routes Ceipal authentication and data access through Membrane rather than directly to Ceipal, creating a meaningful third-party trust and data-flow risk; overall this is suspicious/medium-risk rather than benign.

Confidence: 85%Severity: 58%
Audit Metadata
Analyzed At
Apr 29, 2026, 05:39 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fceipal%2F@f4adf0c35ec494532b1f83febc2fe92f0e88468c
Security Audit — socket — ceipal