moonclerk
Fail
Audited by Socket on Mar 11, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The MoonClerk skill is coherent with its stated purpose: it leverages Membrane as a controlled intermediary to authenticate, connect, query, and proxy MoonClerk API interactions. The reliance on Membrane for credential management and proxying is consistent with a developer-facing integration pattern. No direct local credential exposure is evident, and installs come from official registries (npm). Overall risk is moderate (securityRisk around 0.55) due to external proxying and token-based flows, but the architecture aligns with the described functionality.
Confidence: 98%
Audit Metadata