ab-tasty
Warn
Audited by Socket on Mar 4, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This document is a benign integration guide that delegates authentication and API proxying to the Membrane service. There is no direct malicious code present in the fragment. The primary security concerns are supply-chain risk from unpinned npm installs/npx usage and the centralized trust model inherent in proxying credentials and API traffic through a third-party service (Membrane). Users should pin CLI versions, verify package integrity, and assess Membrane's trustworthiness and data-handling policies before use.
Confidence: 98%Severity: 75%
Audit Metadata