typefully-automation
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill is broadly coherent with its stated Typefully automation purpose and uses same-org Composio/Rube infrastructure, so it does not look overtly malicious. However, it routes authentication and actions through a third-party intermediary instead of direct Typefully APIs, and its setup wording understates the real auth/data-trust boundary. Medium risk due to intermediary data flow and remote action capability, not confirmed malware.
Confidence: 83%Severity: 58%
Audit Metadata