modulr

Warn

Audited by Socket on May 6, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is broadly coherent for a Modulr integration, but it requires trusting Membrane as an intermediary for authentication, credentials, and API actions rather than using Modulr directly. This is not confirmed malicious, and the npm install path is legitimate, but the third-party credential/data routing and mutable CLI install create meaningful security risk.

Confidence: 85%Severity: 56%
Audit Metadata
Analyzed At
May 6, 2026, 09:17 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fmodulr%2F@408f81ca51684c153719e0b76dbe0fceb76bfe8f
Security Audit — socket — modulr