bitbucket-automation

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s Bitbucket automation scope matches its stated purpose, and the Rube/Composio relationship appears official and documented. However, all auth and Bitbucket traffic is routed through a third-party hosted MCP gateway, creating medium trust and data-flow risk, especially given destructive repository actions and credential brokerage outside direct Atlassian APIs.

Confidence: 84%Severity: 56%
Audit Metadata
Analyzed At
Mar 21, 2026, 12:01 PM
Package URL
pkg:socket/skills-sh/sickn33%2Fantigravity-awesome-skills%2Fbitbucket-automation%2F@4c328a993c28e4af2d1a034a8c806aabc13b21e4