apploi

Warn

Audited by Socket on Mar 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill description is coherent with its stated purpose: it facilitates Apploi integration via Membrane, leveraging Membrane’s credential management and proxy capabilities. There are no indicators of credential leakage, exfiltration, or external control beyond legitimate API access. The install path (npm -g install @membranehq/cli) is standard. Data flows are consistent with a secure integration pattern where Membrane manages authentication and forwards requests to Apploi. Overall, the fragment is BENIGN with respect to security posture, though it should be reviewed in the context of the full skill implementation and any upstream dependencies.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 4, 2026, 08:57 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fapploi%2F@0d3b470f4f4b59993da46cabaaa40be8d78e0bfb