balena

Warn

Audited by Socket on Apr 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is internally coherent for Balena integration, and the CLI install path is an official npm distribution rather than an unverifiable binary. However, all Balena access is routed through Membrane, which stores and refreshes credentials and proxies API calls, creating a third-party credential and data-flow dependency that is broader than a direct Balena integration. This is not confirmed malware, but it is medium risk due to intermediary credential handling and proxy-based access.

Confidence: 87%Severity: 56%
Audit Metadata
Analyzed At
Apr 21, 2026, 02:03 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fbalena%2F@eee575283830433466fb0d7b650e9e750d38e1b2