zendesk-guide
Warn
Audited by Socket on Apr 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's basic Zendesk purpose is coherent, and the CLI install path looks like an official npm distribution, but the core data flow is mediated by Membrane rather than Zendesk's official API. That third-party proxy model materially expands trust and exposes Zendesk traffic and auth handling to an intermediary, making this medium risk despite low evidence of outright malware.
Confidence: 84%Severity: 68%
Audit Metadata