maxmind-geoip2

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is not overtly malicious and uses a legitimate npm-distributed Membrane CLI, but its actual data flow is a Membrane-mediated proxy/service layer rather than a direct MaxMind integration. That extra intermediary is disproportionate for a simple GeoIP API skill and introduces credential-forwarding and data-visibility risk, though not enough evidence for malware.

Confidence: 86%Severity: 56%
Audit Metadata
Analyzed At
Apr 29, 2026, 11:37 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fmaxmind-geoip2%2F@3140cf50b37fa03d8f03a75579388132c7b0d086
Security Audit — socket — maxmind-geoip2