waiverforever
Warn
Audited by Socket on May 7, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s purpose aligns with business-data automation, and the CLI source appears to be official/vendor-linked. The main concern is data-flow integrity: WaiverForever access is mediated through Membrane rather than directly through WaiverForever’s official API, creating a third-party trust boundary for credentials and data. Overall this looks more like a legitimate but higher-trust integration layer than outright malware.
Confidence: 87%Severity: 57%
Audit Metadata