open-agent-teams
Warn
Audited by Socket on Jul 22, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s core purpose is coherent, but it deliberately grants detached autonomous control to external CLI agents using dangerous approval-bypass modes. There is no obvious credential-harvesting logic in the skill text, yet the combination of arbitrary agent command execution, background delegation, and forwarding task/context to opaque third-party CLIs creates high operational risk disproportionate to a normal helper skill.
Confidence: 87%Severity: 81%
Audit Metadata