agent-teams
Audited by Socket on Feb 22, 2026
1 alert found:
Security[Skill Scanner] Backtick command substitution detected Benign: The orchestration design for parallel Claude Code agents using isolated worktrees and contract-driven coordination is coherent and aligns with legitimate multi-agent collaboration patterns. No suspicious network activity or credential handling is evident. The approach emphasizes contract-first design, isolated contexts, and controlled merges, which mitigates common supply-chain risks in this scenario. LLM verification: BENIGN with focus on operational rigor: The skill description outlines a coherent, file-and-Git-based multi-agent orchestration model. No executable payload, credentials, or external network activity is evident. The only notable issue is a static-analysis flag related to documentation formatting, not runtime behavior. Overall security risk is low to moderate, driven by complexity and coordination requirements rather than inherent code vulnerabilities.