jamroom

Warn

Audited by Socket on May 8, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is internally consistent as a Membrane-hosted Jamroom integration and uses an official npm-distributed CLI, so it does not look malicious. However, it broadens the trust boundary by routing Jamroom authentication, data access, and admin actions through Membrane’s intermediary service, and it exposes high-impact actions including messaging, email, installs, and configuration changes. Medium security risk; low malware evidence.

Confidence: 84%Severity: 57%
Audit Metadata
Analyzed At
May 8, 2026, 05:18 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fjamroom%2F@ab599b2398ee90838626c9819dd8860b5af490f9
Security Audit — socket — jamroom