microsoft-dynamics-365-business-central

Warn

Audited by Socket on Sep 26, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The stated purpose matches Business Central integration, and the npm install pattern is not inherently malicious. Risk comes from requiring a third-party CLI and routing authenticated API activity through Membrane instead of directly to Microsoft, plus the unpinned `@latest` install. This is coherent but broader-trust than a direct official API integration.

Confidence: 87%Severity: 52%
Audit Metadata
Analyzed At
Sep 26, 2026, 06:21 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fmicrosoft-dynamics-365-business-central%2F@5b4e8e6ce95e075ccf5a572071e38f1fcf47d32bc8488d53df743f7beddd48b5
Security Audit — socket — microsoft-dynamics-365-business-central