smart-workflows

Warn

Audited by Socket on Feb 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The fragment describes an ambitious, architecture-wide SmartACE pipeline integrating analytics, graphs, agent communication, ethics alignment, and visualization bridges. There is a notable mismatch between the claimed constraint (no HTTP/UI requests) and the implemented HTTP-driven orchestration, which raises trust and security concerns. The breadth of components is high and increases the likelihood of misconfigurations; a phased, modular rollout with explicit security controls (authn/Z, role-based access, restricted localhost exposure, sandboxed Blender/UE5 actions) is recommended before production deployment. Overall verdict: SUSPICIOUS to HIGHER-RISK due to inconsistent scope and broad surface area, but with potential value if properly bounded and secured.

Confidence: 65%Severity: 65%
Audit Metadata
Analyzed At
Feb 15, 2026, 11:49 PM
Package URL
pkg:socket/skills-sh/bjoernbethge%2Fmcp-b%2Fsmart-workflows%2F@363fb7feb38779aefc73192c0e8522e0f502160a