orchestrator-implementation
Warn
Audited by Socket on Apr 23, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is broadly coherent as an orchestrator/plugin helper, and I see no clear credential theft, external exfiltration endpoint, or remote installer in the provided text. However, its actual footprint is much broader than a passive implementation reference: it enables autonomous multi-agent delegation, direct subprocess execution of many local scripts, background security scans, and automatic learning/validation, which creates meaningful system-action risk and moderate trust concerns around unpublished local helper code.
Confidence: 84%Severity: 68%
Audit Metadata