apache-superset

Warn

Audited by Socket on Mar 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill is purpose-aligned and scope-appropriate for a Membrane-based Apache Superset integration. It relies on Membrane-managed credentials and proxying to Superset APIs, avoiding local secrets or arbitrary downloads. While generally benign, the security risk hinges on Membrane’s own security and proper access controls for the connected Superset instance. Recommended caution around granting broad permissions to Membrane connections and ensuring least-privilege access for the Superset integration.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 4, 2026, 08:57 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fapache-superset%2F@e5bcff204454ffd3d09972325f5955baf241512e