parallel-research

Warn

Audited by Socket on Mar 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core purpose is coherent and the main Claude CLI appears to be official, but the skill grants spawned web-research agents Bash and Write access, processes untrusted web content, and relies on unverified local helper scripts from another skill. This is not confirmed malware or credential theft, but it is a medium/high-risk automation pattern with notable prompt-injection and permission-scope concerns.

Confidence: 88%Severity: 68%
Audit Metadata
Analyzed At
Mar 28, 2026, 07:16 AM
Package URL
pkg:socket/skills-sh/Jay-523%2Fagent-skills%2Fparallel-research%2F@29022a5ba8e120b31c5091628598fd5f91bf21e1