mirantis

Warn

Audited by Socket on Apr 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is broadly aligned with Mirantis management, and its CLI install path is from an official registry, so there is no strong malware signal. However, the actual data flow is mediated by Membrane rather than direct Mirantis APIs, meaning credentials and API traffic are forwarded through a third-party integration platform; that raises medium security risk and trust concerns even though it may be intentional platform design.

Confidence: 86%Severity: 56%
Audit Metadata
Analyzed At
Apr 21, 2026, 04:12 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fmirantis%2F@2037f1df99bdeafecb33f26576d090d3ab5ed8ae