agent-teams

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill presents a coherent tool aimed at enabling AI-human teamwork within Microsoft Teams, with token extraction from a desktop app and memory-based optimization for repeated tasks. However, there are notable security and data-flow concerns: credential handling relies on desktop-app token extraction without explicit secure-in-memory isolation details; memory file overwrites can risk data integrity; and ambiguous API/endpoint specifics leave room for misconfigurations. Overall, the footprint is proportionate to its stated purpose but elevated by credential-access mechanisms and automated token management, warranting a suspicious-to-moderate risk posture rather than benign.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 02:23 AM
Package URL
pkg:socket/skills-sh/devxoul%2Fagent-messenger%2Fagent-teams%2F@1ef1713cba4f35f622372693c1b0fd1c51c3341b