charlie
Warn
Audited by Socket on Apr 22, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's install path is mostly coherent and same-org, but its core design routes Charlie authentication and API traffic through Membrane rather than directly to Charlie. That intermediary data flow is a meaningful security concern for an integration skill, though there is no strong evidence of overt malware or covert exfiltration beyond the declared Membrane platform model.
Confidence: 85%Severity: 58%
Audit Metadata