team-lead
Warn
Audited by Socket on May 7, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s orchestration purpose is coherent, but it grants a broad action surface by spawning multiple agents, chaining many other skills, and culminating in /ship that can push code and open PRs. No clear credential theft or malicious exfiltration is present, but the autonomous external-action footprint is high for a coordinator skill.
Confidence: 84%Severity: 68%
Audit Metadata