pixiebrix

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The PixieBrix skill presents a coherent, server-driven integration that relies on Membrane to manage authentication and proxy API calls to PixieBrix. Credential handling is mediated by Membrane, reducing local exposure and aligning with the stated purpose. Installation sources are official (npm registry) and the data flow adheres to a Membrane-provided proxy pattern, which is appropriate for the described use-case. Overall, the footprint is benign and proportionate to the stated goal, with a moderate security risk primarily centered on dependency on Membrane's security model and network trust assumptions.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 10:27 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fpixiebrix%2F@269b463c511cba5122e8cd576831eeebd0e7b54d