classlink

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's purpose and capabilities are mostly coherent for a ClassLink integration, and the CLI install path appears to be official vendor tooling from npm. However, all authentication and API traffic are funneled through Membrane as a third-party intermediary instead of going directly to ClassLink, which creates a notable data-flow and trust expansion risk. This looks more like a managed integration gateway than direct ClassLink access; that is not inherently malicious, but it should be treated as medium risk due to proxy-based access and reliance on external platform-controlled credentials.

Confidence: 87%Severity: 52%
Audit Metadata
Analyzed At
Apr 22, 2026, 01:14 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fclasslink%2F@d99b4a444dd52eb7ed145fc633dcba90693197c6