Trust Assessment
folk-automation received a trust score of 95/100, placing it in the Trusted category. This skill has passed all critical security checks and demonstrates strong security practices.
SkillShield's automated analysis identified 1 finding: 0 critical, 0 high, 1 medium, and 0 low severity. Key findings include Skill suggests use of broad-scope remote workbench tool.
The analysis covered 4 layers: Manifest Analysis, Static Code Analysis, Dependency Graph, LLM Behavioral Safety. All layers scored 70 or above, reflecting consistent security practices.
Last analyzed on February 17, 2026 (commit 99e2a295). SkillShield performs automated 4-layer security analysis on AI skills and MCP servers.
Layer Breakdown
Behavioral Risk Signals
Security Findings1
| Severity | Finding | Layer | Location | |
|---|---|---|---|---|
| MEDIUM | Skill suggests use of broad-scope remote workbench tool The skill's 'Quick Reference' section includes `RUBE_REMOTE_WORKBENCH` with `run_composio_tool()` for 'Bulk ops'. While the skill's stated purpose is 'Folk Automation', `run_composio_tool()` is vaguely described. If `run_composio_tool()` can execute any tool available within the Composio ecosystem (not just Folk-specific operations), and Composio offers tools with broader system access (e.g., file system, arbitrary network requests, shell commands), then this skill implicitly encourages the use of a tool with excessive permissions beyond its stated scope. This creates a potential for an agent, following these instructions, to be prompted into executing unintended or malicious actions by leveraging the broad capabilities of `RUBE_REMOTE_WORKBENCH`. Clarify the scope and capabilities of `RUBE_REMOTE_WORKBENCH` and `run_composio_tool()`. If it is intended only for Folk-related bulk operations, explicitly state this and ensure the underlying tool enforces this restriction. If it has broader capabilities, add strong warnings about its power and potential for misuse, or consider if its inclusion in a 'Folk Automation' skill is appropriate without further context or restrictions. | LLM | SKILL.md:79 |
Scan History
Embed Code
[](https://skillshield.io/report/7950330546603f83)
Powered by SkillShield