weweb
Warn
Audited by Socket on May 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the install path is mostly legitimate, but the skill's core design routes WeWeb authentication and API traffic through Membrane as an intermediary rather than using official WeWeb APIs directly. That third-party credential and data path is the main risk and makes the skill broader than its stated purpose.
Confidence: 89%Severity: 74%
Audit Metadata