teamlead-subagent

Warn

Audited by Socket on Apr 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core orchestration purpose is coherent, but the skill materially expands trust by instructing the agent to invoke multiple external skills/MCPs that are not part of this artifact. There is no direct credential theft or explicit exfiltration, but the transitive-skill dependency chain and mandatory background delegation make the overall risk medium.

Confidence: 86%Severity: 58%
Audit Metadata
Analyzed At
Apr 4, 2026, 06:16 AM
Package URL
pkg:socket/skills-sh/nixxel-company-limited%2Fnixxel-skills%2Fteamlead-subagent%2F@30a585d9419b2d7650ef20ab5cb61b2b7a597a41