octoparse

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is internally coherent as a Membrane-based Octoparse integration, and its CLI install path appears same-org and registry-based rather than obviously malicious. The main risk is architectural: Octoparse credentials and API traffic are mediated by Membrane instead of flowing directly to official Octoparse endpoints, combined with unpinned CLI execution and a broad proxy/action surface.

Confidence: 89%Severity: 61%
Audit Metadata
Analyzed At
Apr 29, 2026, 01:02 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Foctoparse%2F@8082181c3f81a78f9d827f2e2ed017c44a782947
Security Audit — socket — octoparse