adversus

Warn

Audited by Socket on Apr 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The install path is largely legitimate and same-publisher, but the skill proxies all Adversus access and credential handling through Membrane rather than directly to Adversus, creating a meaningful third-party data-flow risk. The inaccurate Adversus description/schema list further weakens trust, though there is no strong sign of outright malware or credential theft beyond the disclosed intermediary design.

Confidence: 88%Severity: 56%
Audit Metadata
Analyzed At
Apr 28, 2026, 09:31 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fadversus%2F@3d14659776a47a0f1763c1268b20532c0ba5ad76