I don't know enough about the code or project to offer support or condemnation but malware bytes is awful. Had previous experience of them blocking a website and when we finally got a response they just refused to even look at it or fix the false possitive.
Again I don't know if that's the case here or not. Perhaps someone with technical knowledge and a stake in this project could reverse engineer the code and check outgoing connections to see if there is a problem or not.