alternative-payments
Warn
Audited by Socket on Mar 4, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The fragment is coherently aligned with its stated goal of enabling an Alternative Payments integration via the Membrane CLI. It uses official distribution channels (npm) and standard OAuth/browser-based authentication managed by Membrane, with API calls routed through Membrane’s proxy. There are no obvious credential exposure patterns, no direct code execution, and no hardcoded secrets. The security footprint is consistent with an integration tool and is not unexpectedly invasive. Overall risk is moderate but appropriate for an integration helper; no evidence of malware or covert exfiltration is detected in the provided fragment.
Confidence: 75%Severity: 75%
Audit Metadata