orchestrating-swarms
Warn
Audited by Socket on Mar 3, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The feature-set is coherent and aligned with its stated orchestration purpose, leveraging local, file-based messaging for multi-agent coordination. While no active malware indicators are present, the design introduces a significant local control surface and back-end variability that could be abused if access controls are weak. Recommend implementing strict filesystem permissions, audit trails for spawn/shutdown actions, possible message signing, and least-privilege prompts to mitigate misuse in real deployments.
Confidence: 75%Severity: 75%
Audit Metadata