team-ultra-analyze

Warn

Audited by Socket on May 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is collaborative analysis, but the granted footprint is much broader than necessary. The combination of wildcard file access, Bash, autonomous subagent spawning, and arbitrary-content analysis creates a high-risk agentic workflow even without clear malware or exfiltration behavior.

Confidence: 85%Severity: 74%
Audit Metadata
Analyzed At
May 5, 2026, 04:05 AM
Package URL
pkg:socket/skills-sh/catlog22%2Fclaude-code-workflow%2Fteam-ultra-analyze%2F@85169c9e29b6bb6eaa28c1508da2e20de369ce4f