ansible

Warn

Audited by Socket on Apr 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is broadly coherent with its stated purpose, but it routes Ansible access through Membrane as an intermediary rather than official Ansible endpoints, and it installs/executes an unpinned external CLI. This is not confirmed malicious, but the third-party gateway model, remote action creation, and mutable CLI install raise medium security risk.

Confidence: 88%Severity: 58%
Audit Metadata
Analyzed At
Apr 28, 2026, 07:39 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fansible%2F@41fa6ddbf0e622e70e9b9acc680f5cffebda2cb9