amazon-ecs
Warn
Audited by Socket on Mar 4, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill fragment is consistent with its stated purpose of enabling Membrane-driven Amazon ECS interactions. It uses standard, legitimate patterns: browser-based login, connection management, action discovery, and proxy API calls via Membrane. No credential harvesting, no unauthorized data flows, and no suspicious install behavior are evident. Overall risk is low-to-moderate given reliance on Membrane’s authenticated flow and external AWS endpoints, with no obvious exfiltration or backdoor indicators.
Confidence: 75%Severity: 75%
Audit Metadata