agent-researcher

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Overall, the skill fragment is benign and purpose-aligned. The primary risk vector is potential misinterpretation of embedded code blocks as executable instructions by an agent; otherwise, no credential exposure, no external downloads, and no privileged actions are evident. Ensure runtime environments treat embedded code samples as non-executable documentation to maintain this posture.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 1, 2026, 04:34 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fruflo%2Fagent-researcher%2F@8e717a3af4191d3ad9d24c712eef65b8182c9b45