ise-posture-audit
Warn
Audited by Socket on May 10, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
Purpose and API targets are broadly consistent with a Cisco ISE audit skill, so this is not fundamentally incompatible with its stated use. The main risk is trust: the skill sends sensitive ISE credentials and audit data into unverified local MCP script paths whose provenance is not defined, raising substantial supply-chain and credential-forwarding concerns. Overall: SUSPICIOUS, driven by opaque external executables rather than overtly malicious behavior.
Confidence: 85%Severity: 82%
Audit Metadata