autonomous-agent-harness

Warn

Audited by Socket on May 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The stated purpose matches the capabilities, but this skill materially expands the agent into autonomous, recurring, cross-system operation with memory and optional computer control. The main risks are unpinned/unverified MCP package installation, broad autonomous action scope, and prompt-injection/data-handling exposure from external content. Not confirmed malicious, but high-impact and should be treated as a sensitive automation skill.

Confidence: 84%Severity: 74%
Audit Metadata
Analyzed At
May 1, 2026, 07:07 AM
Package URL
pkg:socket/skills-sh/affaan-m%2Feverything-claude-code%2Fautonomous-agent-harness%2F@cb4306ec5e431751e24e2ef3dcf7a19a58a2c478