userlist-automation

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is broadly coherent with its stated purpose and uses same-org Composio/Rube infrastructure, so it does not look malicious. The main risk is architectural: Userlist access, schemas, and execution are routed through Composio's MCP gateway rather than direct official Userlist APIs, creating moderate credential-forwarding and remote-control trust risk.

Confidence: 84%Severity: 56%
Audit Metadata
Analyzed At
Mar 29, 2026, 07:08 AM
Package URL
pkg:socket/skills-sh/ranbot-ai%2Fawesome-skills%2Fuserlist-automation%2F@6bf08e9512766b05b14ddb0ee8beca6277f31a27