claroty-ot-topology
Warn
Audited by Socket on Jul 30, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The stated purpose and read-only OT-topology capabilities are coherent, and the intended API target appears to be Claroty. Main risk comes from forwarding a sensitive API token and OT network data to an unverified local MCP server script and then composing with additional skills. This is not clearly malicious, but install/provenance and transitive-trust details are weaker than they should be for a credentialed enterprise integration.
Confidence: 77%Severity: 56%
Audit Metadata