agent-teams
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill presents a coherent tool aimed at enabling AI-human teamwork within Microsoft Teams, with token extraction from a desktop app and memory-based optimization for repeated tasks. However, there are notable security and data-flow concerns: credential handling relies on desktop-app token extraction without explicit secure-in-memory isolation details; memory file overwrites can risk data integrity; and ambiguous API/endpoint specifics leave room for misconfigurations. Overall, the footprint is proportionate to its stated purpose but elevated by credential-access mechanisms and automated token management, warranting a suspicious-to-moderate risk posture rather than benign.
Confidence: 98%
Audit Metadata