github-actions

Warn

Audited by Socket on May 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is internally coherent as a Membrane-based GitHub Actions integration, and its install path uses an official npm package rather than a suspicious downloader. However, it relies on a third-party intermediary for authentication and API access, and its remote `action create`/`action run` model expands scope beyond a simple direct GitHub integration. This is not confirmed malware, but it carries medium risk from intermediary credential handling, mutable CLI installation, and broad remote-action capability.

Confidence: 87%Severity: 61%
Audit Metadata
Analyzed At
May 1, 2026, 04:38 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fgithub-actions%2F@3866bcda9b8abe081146309d9de2da412c28653c
Security Audit — socket — github-actions