respond-io-automation
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's purpose is plausible, and the Rube/Composio endpoints appear official to the publisher, but the documented behavior is not fully transparent. It minimizes credential requirements, routes Respond.io access through Composio as an intermediary, and enables remote account actions via dynamic tool discovery, creating medium security risk despite no clear evidence of confirmed malware.
Confidence: 84%Severity: 66%
Audit Metadata