blink
Warn
Audited by Socket on Apr 23, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s purpose and capabilities mostly align, and the CLI install source is official and proportionate. The main concern is data flow integrity: Blink access is mediated through Membrane’s proxy/auth layer, so credentials and API traffic are entrusted to an intermediary rather than going directly to Blink. This is disclosed and may be legitimate for the vendor’s platform, but it materially increases trust scope and operational risk compared with a direct official API integration.
Confidence: 87%Severity: 56%
Audit Metadata