autonomous-agent
Warn
Audited by Socket on Aug 26, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s core problem is not explicit malware but unsafe autonomy. Its stated purpose matches autonomous orchestration, yet it combines silent operation, web research over untrusted sources, and execution of externally derived fixes without provenance controls. That makes the skill high risk for unintended actions and indirect prompt-injection, even though no explicit credential theft or concrete malicious payload is shown.
Confidence: 92%Severity: 82%
Audit Metadata