agent-manager

Warn

Audited by Socket on Mar 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core tmux-based lifecycle management purpose is coherent, but the skill materially increases risk by orchestrating autonomous Bash-capable agents, syncing cron jobs, and feeding them workspace-controlled prompt content. It is not confirmed malware and does not itself exfiltrate data or install payloads, but optional third-party launchers and approval-bypass examples make the overall footprint medium-to-high risk.

Confidence: 84%Severity: 69%
Audit Metadata
Analyzed At
Mar 14, 2026, 02:53 AM
Package URL
pkg:socket/skills-sh/fractalmind-ai%2Fagent-manager-skill%2Fagent-manager%2F@c25a459e47e16bdec8795c60dc64079022619ffe