attendance-giriton
Warn
Audited by Socket on Mar 4, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This Skill document is documentation-only and contains legitimate instructions to use the official Membrane CLI to interact with Attendance GIRITON. There is no embedded malicious code, no download-and-execute commands, and no attempt to read local credential files. The primary security consideration is trust in the Membrane service (getmembrane.com) because all auth and proxied data flows go through it; users should evaluate and trust that service before delegating credentials. Overall, the skill itself appears benign with moderate supply-chain/trust considerations tied to the external managed service.
Confidence: 75%Severity: 75%
Audit Metadata