rancher-labs
Warn
Audited by Socket on May 1, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is coherent as a Membrane-based Rancher integration, and the install path is an official npm package rather than an opaque binary. However, it routes authentication and Rancher operations through Membrane instead of official Rancher APIs, uses mutable `@latest` execution, and allows dynamic remote action creation/execution, so the trust and data-flow footprint is broader than a direct Rancher skill.
Confidence: 82%Severity: 56%
Audit Metadata