team-ultra-analyze
Warn
Audited by Socket on May 5, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose is collaborative analysis, but the granted footprint is much broader than necessary. The combination of wildcard file access, Bash, autonomous subagent spawning, and arbitrary-content analysis creates a high-risk agentic workflow even without clear malware or exfiltration behavior.
Confidence: 85%Severity: 74%
Audit Metadata