beeminder-automation
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's purpose is coherent, but all Beeminder access is mediated by Composio/Rube rather than direct Beeminder APIs, creating a third-party credential and data-routing trust boundary. Install trust is relatively acceptable because the endpoint and setup paths appear official to Composio, but the remote intermediary model and understated auth requirements raise medium risk.
Confidence: 84%Severity: 58%
Audit Metadata