team-feature

Warn

Audited by Socket on Feb 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is functionally coherent with its stated purpose (automatically assembling specialist subagents to implement a feature) and does not contain direct malware payloads or explicit exfiltration instructions. However, it creates high supply-chain and data exposure risks because it: (1) reads arbitrary repository content and diffs (which can include secrets), (2) instructs delivering the full context to all spawned subagents, and (3) relies on spawning general-purpose subagents (transitive trust). These patterns can lead to credential leakage or unintentional exfiltration if subagents are untrusted or compromised. Recommended mitigations before use: redact secrets and sensitive file patterns from the context, enforce least-privilege context passed to each specialist, require user approval for spawning subagents or sending sensitive files, and restrict subagents to vetted code/executors.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 28, 2026, 11:37 PM
Package URL
pkg:socket/skills-sh/shotaiuchi%2Fdotclaude%2Fteam-feature%2F@3bd3ded55d08003a7d7ebb53804e60e2c770d9e5