limacharlie
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is coherent as a Membrane-based LimaCharlie integration, and the CLI source appears official, but all authentication and API traffic are funneled through Membrane rather than directly to LimaCharlie. That third-party intermediary model expands trust and data exposure beyond a typical direct service integration, making this medium risk rather than clearly benign.
Confidence: 84%Severity: 58%
Audit Metadata