servicenow

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is largely coherent with its stated ServiceNow admin purpose and appears to send data directly to ServiceNow, not a credential-harvesting proxy. The main concerns are the curl|bash installer from a self-hosted domain and the very powerful operational surface area (eval, deletes, job runs), which make it medium risk rather than benign.

Confidence: 80%Severity: 58%
Audit Metadata
Analyzed At
Mar 31, 2026, 01:30 PM
Package URL
pkg:socket/skills-sh/jacebenson%2Fjsn%2Fservicenow%2F@51098aa1ef71b6beb339eedc35bdd295f7aedb59