atlassian
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The Atlassian skill is generally coherent with its stated purpose: it provides Jira/Confluence REST API interactions driven by credentials stored in a local secret file. The data flows align with legitimate API usage, and no evident malicious data exfiltration or autonomous real-world actions are described. The credential requirement is proportionate to the task but introduces a potential risk if logs or outputs leak sensitive tokens; ensure secure handling and minimal exposure. Overall verdict: BENIGN with moderate security considerations due to local credential access and potential exposure risk in logs; no evidence of supply-chain or exfiltration mechanisms.
Confidence: 98%
Audit Metadata