claroty-ot-topology

Warn

Audited by Socket on Jul 30, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The stated purpose and read-only OT-topology capabilities are coherent, and the intended API target appears to be Claroty. Main risk comes from forwarding a sensitive API token and OT network data to an unverified local MCP server script and then composing with additional skills. This is not clearly malicious, but install/provenance and transitive-trust details are weaker than they should be for a credentialed enterprise integration.

Confidence: 77%Severity: 56%
Audit Metadata
Analyzed At
Jul 30, 2026, 04:30 PM
Package URL
pkg:socket/skills-sh/automateyournetwork%2Fnetclaw%2Fclaroty-ot-topology%2F@15862700a42ac85e7d8c1304d96ae0d1342eeaf0979f0c4e016854f838334bbd
Security Audit — socket — claroty-ot-topology