kickfire
Warn
Audited by Socket on Apr 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s purpose matches its capabilities, and the CLI source appears official, so this is not malware-like. However, the integration routes authentication and KickFire operations through Membrane as an intermediary platform, with mutable `@latest` CLI execution and server-side action generation, creating medium security risk and broader trust requirements than a direct KickFire integration.
Confidence: 84%Severity: 58%
Audit Metadata