wallarm
Warn
Audited by Socket on Apr 30, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill is internally coherent for a Membrane-published Wallarm connector, and the CLI install path is from an official registry with same-vendor provenance. However, the actual data flow is through Membrane rather than directly to Wallarm, so Wallarm credentials and retrieved data are brokered by a third party; combined with an unpinned global CLI install and remote action creation, this makes the skill medium risk rather than benign.
Confidence: 89%Severity: 58%
Audit Metadata