landing-ai

Warn

Audited by Socket on May 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is coherent as a Membrane-hosted Landing AI integration and uses an official npm-distributed CLI, but it routes authentication and data through Membrane rather than directly to Landing AI. That intermediary design and opaque server-side credential handling create medium security risk despite low evidence of outright malware.

Confidence: 86%Severity: 57%
Audit Metadata
Analyzed At
May 1, 2026, 09:13 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Flanding-ai%2F@19f2a50d39b035b2618d3e3408c87c37527e3099
Security Audit — socket — landing-ai