workflow-creation
Warn
Audited by Socket on Apr 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The core capability aligns with the stated ServiceNow workflow-creation purpose, and the primary data flows target official ServiceNow APIs rather than an external gateway. Risk comes from credential forwarding into a third-party MCP server, a broken placeholder repo reference, broad admin-level powers, and the ability to deploy arbitrary workflow scripts and publish operational automations.
Confidence: 83%Severity: 62%
Audit Metadata