lets-enhance

Warn

Audited by Socket on May 5, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is mostly coherent and uses an official npm-distributed CLI, so it does not show malware-like behavior. However, it routes Let's Enhance access and authentication through Membrane rather than directly to the service’s official API, creating moderate third-party credential and data-flow risk that is higher than a direct vendor integration.

Confidence: 88%Severity: 52%
Audit Metadata
Analyzed At
May 5, 2026, 09:13 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Flets-enhance%2F@720bceabc6628bab6f356559b3076689bea07d5c
Security Audit — socket — lets-enhance