railway

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's core behavior is coherent for a Membrane-based Railway integration, and the CLI install path is a legitimate npm distribution rather than a malicious downloader. However, the actual data flow is not a direct Railway integration: authentication, credential refresh, request signing, and proxied API traffic are all routed through Membrane, a third-party intermediary. That makes the trust footprint broader than the description implies and creates moderate supply-chain and credential-forwarding risk, though not enough evidence for confirmed malware.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
Apr 2, 2026, 06:04 AM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Frailway%2F@7edc562b371b86d1c928a8478e43e6820029684e