mslm-cloud

Warn

Audited by Socket on May 10, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is mostly coherent and uses official Membrane installation/auth flows, so it is not overtly malicious. However, it introduces a third-party intermediary for authentication and API operations instead of using Mslm Cloud's official API directly, and it relies on a mutable global CLI install. This raises moderate security risk and trust-expansion concerns, but the footprint remains broadly aligned with the stated purpose.

Confidence: 83%Severity: 52%
Audit Metadata
Analyzed At
May 10, 2026, 03:21 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fmslm-cloud%2F@72bbf83c95c0e77fc676422ed98d2e3e986b952f