discourse
Warn
Audited by Socket on Apr 24, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill's forum-management capability is broadly aligned with its purpose, and the CLI install source appears legitimate. However, it routes all authenticated Discourse access through Membrane's third-party CLI/service and proxy rather than the official Discourse API, creating a disproportionate intermediary trust and data-flow risk for a simple integration skill.
Confidence: 84%Severity: 62%
Audit Metadata