ClickUp Automation
Fail
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The ClickUp Automation skill presents a coherent, purpose-aligned footprint: it defines task/workflow/time/goal capabilities with concrete automation rules, templates, and integrations. There are no obvious supply-chain or credential-forwarding patterns, and no unmanaged remote code execution patterns. The primary concern is the lack of explicit credential management details and input validation in the supplied artifacts; these gaps should be addressed in documentation and secure configuration guidance. Overall, the footprint is BENIGN with moderate security considerations due to missing credential-handling specifics.
Confidence: 98%
Audit Metadata