Deep Agents Core

Fail

Audited by Socket on Mar 3, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The code fragment appears to be a documentation/specification for the Deep Agents core skill, with usage examples and configuration guidance. There is no evident malicious payload, credential harvesting, or improper data flow within the fragment itself. While it references possible runtime components (FilesystemBackend, StoreBackend, memory store, etc.), these are described as legitimate capabilities for agent orchestration. Overall, the footprint is coherent with its stated purpose and does not present immediate supply-chain security risks in this fragment.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 3, 2026, 12:05 AM
Package URL
pkg:socket/skills-sh/jackjin1997%2Fclawforge%2Fdeep-agents-core%2F@19ed767d5638ab26db9ab72fd134d64a5ea05037