elorus-automation
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's purpose matches Elorus automation, but it routes tool discovery, auth, and execution through Composio's hosted Rube MCP instead of direct Elorus APIs. There is no clear malware or installer abuse, yet the intermediary data flow, likely credential delegation, and remote action capability make it a medium-risk skill that requires substantial trust in Composio/Rube.
Confidence: 84%Severity: 58%
Audit Metadata