piloterr
Warn
Audited by Socket on Apr 22, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill's purpose mostly matches its capabilities, and the CLI install source appears legitimate and publisher-aligned. The main concern is architectural: a Piloterr skill routes authentication and data operations through Membrane's third-party CLI/service, with mutable `@latest` installs and dynamic remote action generation expanding trust and scope beyond a simple direct API integration.
Confidence: 85%Severity: 54%
Audit Metadata