amazon-ecs

Warn

Audited by Socket on Mar 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill fragment is consistent with its stated purpose of enabling Membrane-driven Amazon ECS interactions. It uses standard, legitimate patterns: browser-based login, connection management, action discovery, and proxy API calls via Membrane. No credential harvesting, no unauthorized data flows, and no suspicious install behavior are evident. Overall risk is low-to-moderate given reliance on Membrane’s authenticated flow and external AWS endpoints, with no obvious exfiltration or backdoor indicators.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 4, 2026, 08:57 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Famazon-ecs%2F@d55a3838248617989186f9edf39816e6be8546ee