beeswax
Warn
Audited by Socket on Apr 23, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s stated purpose matches its capabilities, and the CLI install path is vendor-consistent and registry-based. However, the core integration routes authentication and API traffic through Membrane’s hosted proxy layer instead of the official Beeswax API directly, creating a third-party intermediary for credentials and account data. That makes the skill coherent but medium risk from a data-flow and credential-trust perspective rather than clearly benign.
Confidence: 86%Severity: 64%
Audit Metadata