subagents-orchestration-guide
Warn
Audited by Socket on Mar 23, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is coherent as an orchestration guide and shows no third-party install or credential-harvesting behavior, but it grants broad autonomous write/fix/commit authority and mixes WebSearch-derived content with executable workflows. The main risk is agent autonomy and indirect prompt injection, not malware or supply-chain compromise.
Confidence: 89%Severity: 56%
Audit Metadata