pliance
Warn
Audited by Socket on Apr 22, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's stated purpose is coherent, and the CLI comes from an official npm package, but the integration routes authentication and Pliance data through Membrane rather than directly to Pliance. This is a proportional integration pattern, yet it meaningfully expands trust and data exposure to a third-party platform, so risk is medium rather than benign.
Confidence: 87%Severity: 52%
Audit Metadata