liveagent
Warn
Audited by Socket on May 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s functional goal is plausible, and the CLI appears to be an official Membrane tool from npm, so this is not confirmed malware. However, the skill is not a direct LiveAgent integration; it routes authentication and data through Membrane infrastructure, creating third-party credential/data exposure and a larger trust boundary than the stated purpose suggests.
Confidence: 85%Severity: 61%
Audit Metadata