teller
Warn
Audited by Socket on May 5, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill is broadly coherent for a managed Teller integration, and the CLI install source appears official. The main risk is that all Teller authentication and data operations are mediated by Membrane, a third-party gateway, plus unpinned npm execution. This is not clearly malicious, but it meaningfully enlarges the trust boundary for financial data and workflow actions.
Confidence: 84%Severity: 57%
Audit Metadata