Security Audit
cutt-ly-automation
github.com/ComposioHQ/awesome-claude-skillsTrust Assessment
cutt-ly-automation received a trust score of 97/100, placing it in the Trusted category. This skill has passed all critical security checks and demonstrates strong security practices.
SkillShield's automated analysis identified 1 finding: 0 critical, 0 high, 0 medium, and 1 low severity. Key findings include Unversioned External Dependency.
The analysis covered 4 layers: Manifest Analysis, Static Code Analysis, Dependency Graph, LLM Behavioral Safety. All layers scored 70 or above, reflecting consistent security practices.
Last analyzed on February 17, 2026 (commit 99e2a295). SkillShield performs automated 4-layer security analysis on AI skills and MCP servers.
Layer Breakdown
Behavioral Risk Signals
Security Findings1
| Severity | Finding | Layer | Location | |
|---|---|---|---|---|
| LOW | Unversioned External Dependency The skill declares a dependency on the 'rube' Multi-Cloud Platform (MCP) without specifying a version. This means the skill relies on the latest available version of the Rube MCP, which could introduce breaking changes or unexpected behavior if the platform updates. While common for platform integrations, explicit versioning or pinning is generally recommended for stability and security in software supply chains. If possible, specify a version or a version range for the 'rube' MCP dependency to ensure stability and prevent unexpected behavior from future updates. If versioning is not supported for this type of platform integration, document the expected Rube MCP version or API compatibility. | Static | SKILL.md:4 |
Scan History
Embed Code
[](https://skillshield.io/report/d100e8d5bc38c86b)
Powered by SkillShield