outreach
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s capabilities broadly match its stated Outreach integration purpose, and the CLI install path is reasonably legitimate via npm. However, the core design routes authentication and API traffic through Membrane as an intermediary, with broad proxy access and mutable CLI install instructions; this is coherent but medium-risk due to credential/data mediation and action scope.
Confidence: 85%Severity: 57%
Audit Metadata