cloudlayer

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is coherent with Membrane's stated integration model, but its actual footprint routes Cloudlayer authentication and data through Membrane rather than Cloudlayer's official API. The npm install source is reasonably trustworthy, so this is not strong malware evidence, but the third-party credential/data mediation and unpinned global CLI install create medium security risk.

Confidence: 83%Severity: 56%
Audit Metadata
Analyzed At
Apr 29, 2026, 11:37 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fcloudlayer%2F@aa48b3c2566821d994209c1384f253a62becf083
Security Audit — socket — cloudlayer