rafay-systems

Warn

Audited by Socket on May 8, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is broadly coherent with its stated purpose, and the CLI comes from the official npm registry rather than a raw binary. However, it introduces an intermediary trust boundary: Rafay authentication and API traffic are routed through Membrane-managed connections instead of directly to Rafay, and the globally installed CLI is unpinned (`@latest`). This is not clearly malicious, but the third-party credential/data handling and proxy design raise medium security risk.

Confidence: 82%Severity: 58%
Audit Metadata
Analyzed At
May 8, 2026, 05:00 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Frafay-systems%2F@25391913299c0d3c960e7db0e7045aa2e1b73ff1
Security Audit — socket — rafay-systems