ai-automation-workflows
Warn
Audited by Socket on Mar 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is broadly aligned with AI workflow automation, but it expands trust through a transitive skill install, relies on a vendor CLI that receives credentials and mediates all model/API traffic, and includes examples that can send workflow data to arbitrary webhooks. This looks more like elevated supply-chain and data-flow risk than confirmed malware.
Confidence: 85%Severity: 64%
Audit Metadata