conductor-orchestrator

Warn

Audited by Socket on Apr 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's orchestration purpose broadly matches its capabilities, but its footprint is high-risk because it enables autonomous multi-agent code execution, background worker spawning, and high-impact decision-making without per-action user approval. The official Claude CLI reference reduces installer concern, yet the overall skill remains risky due to autonomy, transitive skill loading, and prompt-injection exposure across many subagents.

Confidence: 89%Severity: 78%
Audit Metadata
Analyzed At
Apr 6, 2026, 05:55 PM
Package URL
pkg:socket/skills-sh/Ibrahim-3d%2Forchestrator-supaconductor%2Fconductor-orchestrator%2F@ffb2eda481fff7e65a25072d08033f0751a69129
Security Audit — socket — conductor-orchestrator