cisco-cdr-mcp

Warn

Audited by Socket on Apr 6, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The stated purpose matches CDR analysis, but the skill routes sensitive enterprise call-detail queries to an external remote MCP server with no documented auth model, publisher verification, or data-handling assurances. This is not confirmed malware, but the remote data flow and transitive trust in a third-party MCP service create meaningful security and privacy risk disproportionate to a typical local analytics skill.

Confidence: 79%Severity: 62%
Audit Metadata
Analyzed At
Apr 6, 2026, 02:04 AM
Package URL
pkg:socket/skills-sh/cmds-cc%2Fskills%2Fcisco-cdr-mcp%2F@813020334bcebb9c8a04724b195aae75ee1b2868