power-automate-monitoring
Warn
Audited by Socket on Apr 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill is mostly coherent with its stated monitoring/governance purpose and uses same-org official domains, with no local installer or unverifiable binary risk. The main concern is data-flow scope: a third-party hosted MCP service receives a token and mediates access to broad cached tenant data, including sensitive fields and state-changing actions. This is not clearly malicious, but it is medium risk because the service is an intermediary with substantial visibility and control over Power Automate assets.
Confidence: 87%Severity: 56%
Audit Metadata