swarm

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s core purpose is coherent, but its footprint is high-risk for an agent skill because it delegates to other skills, processes potentially untrusted remote task content, and enables unattended multi-agent code modification and auto-merge. No clear evidence of credential theft or malicious exfiltration, but the autonomy and transitive trust are disproportionate enough to warrant caution.

Confidence: 82%Severity: 68%
Audit Metadata
Analyzed At
Mar 31, 2026, 06:32 AM
Package URL
pkg:socket/skills-sh/jonmumm%2Fskills%2Fswarm%2F@c42e86ced1242e7b72e17bc80590f8f92f95583a