neonomics
Warn
Audited by Socket on Apr 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is broadly coherent with its stated Neonomics integration purpose and uses an official same-org CLI from npm, so it does not look overtly malicious. However, it routes sensitive financial operations through Membrane as an intermediary, uses unpinned CLI installs, and enables payment-capable actions without explicit approval safeguards, making it medium risk rather than fully benign.
Confidence: 85%Severity: 52%
Audit Metadata