precoro
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core behavior is mostly coherent for a Membrane-based Precoro integration, and the CLI source appears legitimate. The main concern is that authentication and API traffic are routed through Membrane rather than directly to Precoro, plus mutable CLI installation and broad action/proxy capability increase trust and operational risk. Not clearly malicious, but it introduces meaningful third-party mediation and should be treated as medium risk.
Confidence: 84%Severity: 56%
Audit Metadata