mailerlite

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's capabilities match its MailerLite purpose and the CLI install path is reasonably legitimate, so this is not overt malware. The main concern is data-flow integrity: MailerLite access is funneled through Membrane's backend/proxy rather than directly to MailerLite, expanding the trust boundary and enabling broad third-party access to account data and actions.

Confidence: 87%Severity: 56%
Audit Metadata
Analyzed At
Apr 22, 2026, 03:36 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fmailerlite%2F@268ce5061e8b8302c4aa3d2e36640c8447587d1d