upbooks
Warn
Audited by Socket on Apr 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
The skill is coherent with its stated purpose and uses an official registry install, but it introduces a meaningful trust boundary: UpBooks access and credentials are mediated by Membrane rather than going directly to UpBooks. That makes it suspicious-but-not-malicious from a data-flow perspective, with medium security risk due to third-party credential handling and proxying.
Confidence: 87%Severity: 56%
Audit Metadata