wb
Warn
Audited by Socket on Apr 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The install source is relatively trustworthy and same-org, so this is not a clear malware or fake-installer case. However, the skill’s real footprint is a Membrane integration that mediates W&B auth and traffic through a third-party proxy/CLI, which is broader and riskier than a direct W&B skill.
Confidence: 84%Severity: 58%
Audit Metadata