rydoo
Warn
Audited by Socket on May 1, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s stated purpose matches its capabilities, and the CLI install path is same-org via npm, so this is not overt malware. However, the integration is materially mediated by Membrane rather than directly by Rydoo, so Rydoo credentials, sessions, and business data are routed through a third-party platform with dynamic server-side action creation. That intermediary data flow and unpinned CLI install make the skill medium risk.
Confidence: 86%Severity: 61%
Audit Metadata