fortigate-ops
Warn
Audited by Socket on Aug 6, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill's stated purpose and requested FortiGate credentials are coherent for read-only firewall operations, and the documented data flow to the FortiGate REST API is plausible. The main risk is that all access is funneled through an unspecified external command ($FORTINET_MCP_CMD), so the actual executable receiving the API token is not verifiable from the skill itself; this makes the install/execution trust disproportionally opaque even though the functional scope appears legitimate.
Confidence: 85%Severity: 78%
Audit Metadata