fortianalyzer-ops

Warn

Audited by Socket on Aug 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's stated purpose and read-only capabilities are internally consistent, and the intended endpoint aligns with FortiAnalyzer JSON-RPC. However, the skill delegates all sensitive access to an unspecified FORTINET_MCP_CMD binary with no verified public provenance or release artifacts in the evidence, while forwarding the FortiAnalyzer API token to it. That makes this primarily a supply-chain and credential-forwarding risk rather than confirmed malware.

Confidence: 86%Severity: 82%
Audit Metadata
Analyzed At
Aug 6, 2026, 09:48 AM
Package URL
pkg:socket/skills-sh/automateyournetwork%2Fnetclaw%2Ffortianalyzer-ops%2F@479258553659eceadc8521ff411999e82ec814030539fa708167210327477d2b
Security Audit — socket — fortianalyzer-ops