agent-v3-queen-coordinator

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill appears designed to orchestrate a 15-agent swarm with telemetry and coordination data being gathered and persisted via external tooling (npx agentic-flow and memory store-pattern). While the stated purpose is orchestration, the actual footprint includes remote tool invocations and potential telemetry/data persistence to external stores, which constitutes a non-trivial supply-chain and data-flow surface. The combination of external dependency fetches, telemetry storage, and optional GitHub interactions warrants careful review before production use. The endpoints and data flows align with a coordination/telemetry capability, but the presence of remote tooling and data persistence increases risk. Recommend treating as SUSPICIOUS to HIGH risk until demonstrated secure provenance of agentic-flow@alpha, explicit data minimization, and restricted telemetry.

Confidence: 56%Severity: 58%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:19 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fruflo%2Fagent-v3-queen-coordinator%2F@580bc9ec7af8da9499a602e579b08412a011969f