setmore
Warn
Audited by Socket on Apr 28, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's purpose broadly matches Setmore integration, and the CLI install source appears legitimate, but the actual data flow routes authentication and API traffic through Membrane instead of directly to Setmore. That third-party credential and data mediation is a meaningful integrity and trust risk, though not confirmed malware.
Confidence: 86%Severity: 68%
Audit Metadata