modulr
Warn
Audited by Socket on May 6, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill is broadly coherent for a Modulr integration, but it requires trusting Membrane as an intermediary for authentication, credentials, and API actions rather than using Modulr directly. This is not confirmed malicious, and the npm install path is legitimate, but the third-party credential/data routing and mutable CLI install create meaningful security risk.
Confidence: 85%Severity: 56%
Audit Metadata