amplitude-automation

Warn

Audited by Socket on Aug 8, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s analytics capabilities match its stated purpose, but its trust and data-flow model are weaker than a direct Amplitude integration: it routes authenticated access through a third-party hosted MCP service, and the setup references a discontinued Rube endpoint/tool naming that no longer matches current official Composio documentation. This is not confirmed malware, but it is a medium-risk, stale intermediary integration that warrants caution.

Confidence: 86%Severity: 58%
Audit Metadata
Analyzed At
Aug 8, 2026, 12:56 PM
Package URL
pkg:socket/skills-sh/sickn33%2Fagentic-awesome-skills%2Famplitude-automation%2F@fd12198aafbcf81b645cdded0d2c2d7e6b52926a74b621cf8da3e8f3e8f526b9
Security Audit — socket — amplitude-automation