customerguru
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The customerguru skill demonstrates coherent purpose-capability alignment: it provides a Membrane-driven integration to interact with Customer.guru data via a controlled proxy, with authentication and credential management handled server-side. Install sources are reputable (npm registry), and data flow is mediated by Membrane, reducing local credential exposure. Scope is proportional to a connector/tooling use case, not broad destructive access. Overall, the risk profile is Low-to-Medium (benign with cautious monitoring), with securityRisk around 0.25 and malware around 0.05. Trust is contingent on Membrane's security model and proper access control to Customer.guru resources via the proxy.
Confidence: 98%
Audit Metadata