zoho-automation
Warn
Audited by Socket on May 1, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill is broadly aligned with its stated purpose, but all Zoho access is mediated through Composio/Rube rather than direct Zoho APIs, so user data and delegated auth are routed through a third party. There is no clear malware behavior or covert exfiltration in the provided skill, but the middleware data flow and service trust dependency raise medium security risk.
Confidence: 84%Severity: 52%
Audit Metadata