orchestration

Warn

Audited by Socket on Mar 19, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The core orchestration behavior matches the stated purpose, but the skill expands capabilities by instructing installation of an unverified third-party plugin and then drives autonomous background worker execution with broad indirect tool use. Data exfiltration or credential theft is not evident in the provided text, so this is better classified as a high-risk/transitive-trust orchestration skill rather than confirmed malware.

Confidence: 88%Severity: 72%
Audit Metadata
Analyzed At
Mar 19, 2026, 06:29 PM
Package URL
pkg:socket/skills-sh/duyet%2Fskills%2Forchestration%2F@a9dbe8ece83b92b7c36f6df1fae9028b9e87955e
Security Audit — socket — orchestration