open-agent-teams

Warn

Audited by Socket on Jul 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s core purpose is coherent, but it deliberately grants detached autonomous control to external CLI agents using dangerous approval-bypass modes. There is no obvious credential-harvesting logic in the skill text, yet the combination of arbitrary agent command execution, background delegation, and forwarding task/context to opaque third-party CLIs creates high operational risk disproportionate to a normal helper skill.

Confidence: 87%Severity: 81%
Audit Metadata
Analyzed At
Jul 22, 2026, 01:16 AM
Package URL
pkg:socket/skills-sh/AI-Builder-Club%2Fskills%2Fopen-agent-teams%2F@49351ed2e67013627f7509c90787c4075c84c5e525cb5141b65d3385f3050305
Security Audit — socket — open-agent-teams