agentix-ceo

Warn

Audited by Socket on Jul 27, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill is broadly consistent with an AI team orchestration service, and its data flows mostly match official Agentix endpoints, so this is not confirmed malware. However, it combines silent local credential handling, forwarding of Anthropic/GitHub secrets to the backend, unauthenticated self-hosted API access, and an explicit autopilot mode that can take ongoing actions without per-action approval, making the overall security posture medium-high risk.

Confidence: 88%Severity: 68%
SecurityMEDIUM
skill-report.json

No explicit malware payload is evidenced because the artifact is documentation rather than executable code. However, the described workflow presents a high security risk due to (1) plaintext persistence of sensitive Agentix credentials in a hidden home directory (`~/.agentix/credentials`), (2) delegation of third-party secrets (Anthropic API key and GitHub token) to a remote orchestration/control plane, and (3) remote playbook ingestion that governs autonomous/supervised agent behavior. Additionally, the self-hosted “no auth required” description is a major deployment red flag that could enable unauthorized local-network control if implemented similarly.

Confidence: 62%Severity: 82%
Audit Metadata
Analyzed At
Jul 27, 2026, 04:16 AM
Package URL
pkg:socket/skills-sh/aiskillstore%2Fmarketplace%2Fagentix-ceo%2F@664b50aa03bf3e8c432b5c2c6dced8c8cb4d6c702889b680800146a0c3272701
Security Audit — socket — agentix-ceo