monday-automation

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is purpose-aligned and uses a verifiable official Composio/Rube MCP endpoint, so it does not look malicious. Risk comes from routing Monday OAuth-backed operations and workspace data through a third-party MCP intermediary, plus broad write capabilities and raw GraphQL passthrough that could affect many Monday resources.

Confidence: 83%Severity: 56%
Audit Metadata
Analyzed At
Mar 13, 2026, 07:02 AM
Package URL
pkg:socket/skills-sh/aAAaqwq%2FAGI-Super-Team%2Fmonday-automation%2F@86c2ac97f6731d348cb51277c920bb633307be97