klipfolio
Warn
Audited by Socket on Apr 22, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s stated purpose mostly matches its behavior, and the CLI distribution path appears legitimate, but the real integration path is through Membrane as an intermediary rather than directly to Klipfolio. That creates a meaningful credential-forwarding and data-flow trust dependency that is disclosed but broader than a direct Klipfolio skill.
Confidence: 87%Severity: 56%
Audit Metadata