cloudbees

Warn

Audited by Socket on May 6, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is coherent in purpose, but it shifts CloudBees authentication and API traffic through Membrane, a third-party intermediary, and grants broad mutation/proxy capabilities. The installer itself looks legitimate and registry-based, so this is not confirmed malware; the main risk is trust expansion and credential/data routing through Membrane rather than direct CloudBees access.

Confidence: 84%Severity: 64%
Audit Metadata
Analyzed At
May 6, 2026, 04:45 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fcloudbees%2F@d6222aa72ba65cafcd416e17965aacc8b592a71c
Security Audit — socket — cloudbees