rillet
Warn
Audited by Socket on May 12, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill is not overtly malicious and uses an official npm-hosted CLI from the same vendor ecosystem, but it is internally inconsistent and routes Rillet access through Membrane rather than direct official Rillet endpoints. The biggest issues are purpose/action mismatch and intermediary data flow, not confirmed malware.
Confidence: 88%Severity: 53%
Audit Metadata