falcosecurity

Warn

Audited by Socket on May 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s purpose and capabilities mostly align, and the CLI comes from an official npm package under the same brand, so this is not overtly malicious. However, all Falco access, authentication, and action execution are routed through Membrane rather than official Falco APIs, creating meaningful third-party trust and data-flow risk; combined with the unpinned CLI install, this is more than low risk but not incompatible enough to call malicious.

Confidence: 86%Severity: 56%
Audit Metadata
Analyzed At
May 1, 2026, 08:26 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Ffalcosecurity%2F@e5a59ed04c0d698b85134c0577625f85be8771b0
Security Audit — socket — falcosecurity