hosted-multi-agent-orchestrator
Warn
Audited by Socket on Apr 8, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core purpose is coherent with multi-agent orchestration and first-party Tasking.tech API use, and there is no download-execute or overt credential theft behavior. However, endpoint documentation is only partially verified, the skill routes potentially sensitive project context to an external service, and it explicitly relies on other skills, creating transitive trust and moderate autonomy risk.
Confidence: 82%Severity: 56%
Audit Metadata