upcloud
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the install source is coherent and official for Membrane, but the skill’s real behavior is to funnel UpCloud authentication and API access through Membrane as an intermediary. That makes the trust and data-flow footprint broader than a straightforward UpCloud integration and creates meaningful credential-forwarding and proxying risk without clear necessity.
Confidence: 87%Severity: 72%
Audit Metadata