atlassian

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Atlassian skill is generally coherent with its stated purpose: it provides Jira/Confluence REST API interactions driven by credentials stored in a local secret file. The data flows align with legitimate API usage, and no evident malicious data exfiltration or autonomous real-world actions are described. The credential requirement is proportionate to the task but introduces a potential risk if logs or outputs leak sensitive tokens; ensure secure handling and minimal exposure. Overall verdict: BENIGN with moderate security considerations due to local credential access and potential exposure risk in logs; no evidence of supply-chain or exfiltration mechanisms.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 03:32 PM
Package URL
pkg:socket/skills-sh/boazy%2Fskills%2Fatlassian%2F@94e442561d348ca3e0ff6247aa8fd90ad64371a5