docomo-digital
Warn
Audited by Socket on Apr 25, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's purpose is coherent, and the CLI install path appears official, but all DOCOMO Digital access is routed through Membrane rather than directly to official DOCOMO endpoints. This creates a meaningful intermediary trust and data-flow risk, amplified by unpinned CLI execution, though there is no strong evidence of malware or overt credential theft.
Confidence: 87%Severity: 56%
Audit Metadata