sec-agentshield-wrapper
Warn
Audited by Socket on Aug 18, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core purpose is coherent and mostly documentation-like, with no direct credential theft, installer chain, or exfiltration path. However, the directive to run spawned agents with bypassPermissions is disproportionate for a pre-flight analysis wrapper and raises meaningful execution-trust risk; follow-up skill references and unspecified CRG integration add secondary trust uncertainty.
Confidence: 85%Severity: 56%
Audit Metadata