pretix

Warn

Audited by Socket on May 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is not overt malware and uses an official npm-distributed CLI from the same vendor, but its actual footprint is a Membrane integration more than a direct Pretix integration. The main concern is data-flow integrity: Pretix authentication and data are mediated by Membrane, a third-party service, which is broader and less transparent than calling Pretix's official API directly.

Confidence: 85%Severity: 58%
Audit Metadata
Analyzed At
May 4, 2026, 04:25 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fpretix%2F@4cb4d0a3c12dbd56095d36885f9ad7aa72157714
Security Audit — socket — pretix