railway

Warn

Audited by Socket on Apr 30, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's core behavior is coherent for a Membrane-based Railway integration, and the CLI install path is a legitimate npm distribution rather than a malicious downloader. However, the actual data flow is not a direct Railway integration: authentication, credential refresh, request signing, and proxied API traffic are all routed through Membrane, a third-party intermediary. That makes the trust footprint broader than the description implies and creates moderate supply-chain and credential-forwarding risk, though not enough evidence for confirmed malware.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
Apr 30, 2026, 06:49 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Frailway%2F@1d08c1c6cd2a25450d52bf8bd8a954dd8c1394ce