jira
Warn
Audited by Socket on Apr 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The Jira functionality and requested credentials are broadly aligned with the stated purpose, and the documented endpoint pattern is consistent with Atlassian. However, the core dependency is an unverified `af` CLI with no installation provenance in the skill, so users are asked to trust an opaque executable with Jira credentials and file uploads.
Confidence: 84%Severity: 72%
Audit Metadata