herald

Warn

Audited by Socket on May 3, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s purpose and capabilities mostly align, and the CLI comes from an official registry source, but the integration routes authentication and Herald API traffic through Membrane rather than directly to Herald. This third-party proxy model and mutable CLI install increase trust and data-flow risk beyond a minimal direct API skill, though there is not enough evidence of overtly malicious behavior.

Confidence: 85%Severity: 58%
Audit Metadata
Analyzed At
May 3, 2026, 08:45 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fherald%2F@feefbcf7c8ef8453f5374a907d9cef77c0b58df0