teamlead-subagent
Warn
Audited by Socket on Apr 4, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core orchestration purpose is coherent, but the skill materially expands trust by instructing the agent to invoke multiple external skills/MCPs that are not part of this artifact. There is no direct credential theft or explicit exfiltration, but the transitive-skill dependency chain and mandatory background delegation make the overall risk medium.
Confidence: 86%Severity: 58%
Audit Metadata