wrike
Warn
Audited by Socket on Jun 28, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill's purpose and capabilities mostly align, and the install source appears to be the publisher's npm package, but the core integration routes authentication and Wrike operations through ClawLink's third-party backend instead of Wrike's official direct API flow. That intermediary trust, local credential storage, unpinned `npx` execution, and potential hosted logging make the skill medium-risk even without clear evidence of malware.
Confidence: 85%Severity: 60%
Audit Metadata