lessonly
Warn
Audited by Socket on May 5, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill's purpose and capabilities are broadly aligned, and the CLI install path is consistent with official Membrane documentation. However, the skill routes authentication, Lessonly access, and action execution through Membrane rather than directly to Lessonly, creating intermediary credential/data-flow risk; combined with unpinned CLI installation and server-side action generation, this is more than benign but not clearly malicious.
Confidence: 85%Severity: 56%
Audit Metadata