atlassian-mcp
Warn
Audited by Socket on Jul 29, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s stated purpose is legitimate and its requested Atlassian credentials are proportionate, but its example setup routes those credentials through an unrelated third-party MCP server installed via unverified `npx` execution rather than Atlassian’s official MCP path. This is primarily a supply-chain and credential-forwarding risk, not confirmed malware.
Confidence: 88%Severity: 82%
Audit Metadata