azure-speech-service
Warn
Audited by Socket on Apr 28, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill is mostly coherent for a Membrane-based Azure Speech integration and uses an official npm package, so it is not overtly malicious. The main risk is architectural: Azure authentication and data flow through Membrane’s intermediary service rather than directly to Microsoft, plus mutable `@latest` CLI installation and broad proxy capability increase trust and exposure.
Confidence: 88%Severity: 53%
Audit Metadata