reply-automation
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's purpose matches its capabilities, and the MCP endpoint appears to be an official Composio service, so this is not clearly malicious. However, all actions and likely auth handling are mediated through Composio/Rube rather than direct Reply APIs, creating moderate third-party trust, delegated-action, and data-flow risk.
Confidence: 84%Severity: 58%
Audit Metadata