scale-ai

Warn

Audited by Socket on Apr 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's basic functionality is coherent, and its CLI install path appears legitimate, but the integration routes Scale AI access through Membrane as a third-party intermediary. That makes the data flow and credential handling broader than a direct Scale AI skill, so risk is medium even without strong evidence of outright malware.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
Apr 21, 2026, 07:12 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fscale-ai%2F@ada99bcea791729f6ec9b0b030f2a03ee9021f0f