servicenow-change-workflow
Warn
Audited by Socket on Mar 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The workflow's purpose is coherent, but its core trust boundary is undocumented local MCP scripts that can perform privileged ticketing and network changes. ServiceNow use is expected, yet the unverifiable executables and unclear GAIT data destination raise material supply-chain and operational-risk concerns.
Confidence: 87%Severity: 81%
Audit Metadata