fatture-in-cloud

Warn

Audited by Socket on May 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s stated purpose is Fatture in Cloud integration, but its actual footprint routes authentication, action generation, and data access through Membrane as a third-party intermediary. The CLI install path is relatively legitimate, yet the data-flow and credential model are broader than necessary and not aligned with direct use of the official Fatture in Cloud API.

Confidence: 85%Severity: 76%
Audit Metadata
Analyzed At
May 8, 2026, 10:53 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Ffatture-in-cloud%2F@a8c99e99f16039167e94db4251616aab94e1cace
Security Audit — socket — fatture-in-cloud