pagerduty

Warn

Audited by Socket on Apr 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's functionality matches its PagerDuty purpose, and the CLI comes from an official npm package, so this is not overtly malicious. However, it routes PagerDuty authentication and data through Membrane as an intermediary instead of direct official API use, creating a meaningful third-party trust and credential-handling risk.

Confidence: 86%Severity: 57%
Audit Metadata
Analyzed At
Apr 21, 2026, 10:03 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fpagerduty%2F@b7026fb9b5ff27dcaab2fc27bf6a0a56678b2630