rapidapi
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill is broadly coherent for RapidAPI access, and the CLI comes from an official npm package, but the actual integration is mediated by Membrane rather than direct RapidAPI APIs. That creates a meaningful third-party trust and data-routing concern, amplified by mutable `@latest`/`npx` execution and server-side credential handling.
Confidence: 85%Severity: 56%
Audit Metadata