delegate-task
Warn
Audited by Socket on Mar 30, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s purpose is broad delegation, but it routes tasks and local skill content into an external autonomous ecosystem that can auto-import third-party skills and upload evolved ones. The main risks are transitive skill installation, prompt injection from untrusted remote skills/content, and open-ended autonomous actions through an external worker.
Confidence: 87%Severity: 84%
Audit Metadata