copper

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's purpose and commands are internally coherent for a Copper integration, and the CLI source appears official. The main risk is architectural: all Copper access and credential handling are mediated by Membrane, so CRM data and auth flows pass through a third-party platform rather than directly to Copper. This is not clearly malicious, but it increases trust and data-flow risk beyond a normal direct API integration.

Confidence: 87%Severity: 56%
Audit Metadata
Analyzed At
Apr 29, 2026, 07:39 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fcopper%2F@c0cfce984a8dfb0076c1f2f0969e52b9d032c3aa
Security Audit — socket — copper