stability-ai
Warn
Audited by Socket on Apr 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's core purpose is coherent, and the CLI install path appears to be an official npm-distributed Membrane tool rather than a random payload. However, the skill is not a direct Stability AI integration: it requires a Membrane account and routes requests and auth through Membrane's proxy/connection layer, which introduces third-party credential and data-flow trust beyond Stability AI's official API. This is more a Membrane-to-Stability bridge than a native Stability AI skill.
Confidence: 84%Severity: 56%
Audit Metadata