memsource
Warn
Audited by Socket on Apr 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s stated purpose matches its Memsource-management capabilities, and the CLI install path appears official and proportionate. However, all authentication and optional raw API traffic are routed through Membrane’s intermediary platform instead of directly to Memsource, creating meaningful third-party credential/data handling risk even though it is disclosed and product-consistent.
Confidence: 87%Severity: 62%
Audit Metadata