cross-team-comm

Warn

Audited by Socket on Aug 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is not clearly malware, but it is high-risk and suspicious in scope. Its stated purpose is cross-team communication, yet it also instructs the agent to SSH into remote hosts, enumerate configs and identities, extract tokens and channel metadata, and retain them in MEMORY.md; that access is disproportionate to simple messaging even though most network flows target expected OpenClaw, SSH/Tailscale, and official Feishu endpoints.

Confidence: 87%Severity: 78%
Audit Metadata
Analyzed At
Aug 16, 2026, 02:21 AM
Package URL
pkg:socket/skills-sh/aaaaqwq%2Fagi-super-team%2Fcross-team-comm%2F@5631b8cb7e28fddb0bf6d341403b0b11f9d384d0acee0d93da264b0fd9d1ec7e
Security Audit — socket — cross-team-comm