gitlab-automation
Warn
Audited by Socket on Sep 4, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s GitLab automation purpose matches its capabilities, and there is no direct malware pattern or executable installer. However, it relies on a third-party MCP/OAuth intermediary for all GitLab access, and the documented Rube endpoint appears outdated/discontinued, which makes install trust and data-flow integrity only partially verifiable.
Confidence: 85%Severity: 55%
Audit Metadata