Replicate Automation
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's capabilities mostly match its stated Replicate automation purpose, and there is no risky installer chain. The main concern is data-flow integrity: Replicate authentication and workflow data are routed through Composio/Rube middleware rather than directly to Replicate, and optional webhooks can forward outputs externally. This is proportionate for an MCP gateway skill but introduces moderate third-party trust and data exposure risk.
Confidence: 87%Severity: 58%
Audit Metadata