servicenow-change-workflow

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The workflow's purpose is coherent, but its core trust boundary is undocumented local MCP scripts that can perform privileged ticketing and network changes. ServiceNow use is expected, yet the unverifiable executables and unclear GAIT data destination raise material supply-chain and operational-risk concerns.

Confidence: 87%Severity: 81%
Audit Metadata
Analyzed At
Mar 18, 2026, 06:15 AM
Package URL
pkg:socket/skills-sh/automateyournetwork%2Fnetclaw%2Fservicenow-change-workflow%2F@ae3d8d4fb2110c04675ed4770f732f349b9a98c2