n8n
Warn
Audited by Socket on Mar 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The direct n8n API usage is purpose-aligned and mostly benign, but the optional MCP integration materially increases risk: it auto-executes an unpinned third-party package from a personal publisher and hands it a potentially full-access n8n API key. Not confirmed malware, but the credential-forwarding and supply-chain posture are disproportionate enough to warrant caution.
Confidence: 87%Severity: 72%
Audit Metadata