celoxis
Warn
Audited by Socket on Apr 28, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose matches Celoxis integration, and the CLI source is official npm-scope tooling, but the skill introduces a third-party Membrane trust boundary for authentication and API access instead of direct Celoxis endpoints. Overall this is coherent but medium risk due to mutable CLI install and intermediary data flow.
Confidence: 87%Severity: 52%
Audit Metadata