work

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the workflow/router purpose broadly matches its capabilities, but the explicit `System Prompt for Next Agent` requirement is incompatible with legitimate workflow management and materially elevates risk. The skill also combines untrusted-content intake, command execution, file mutation, and delegated sub-skill/subagent routing, producing medium-high security exposure even without clear malware or credential theft behavior.

Confidence: 87%Severity: 68%
Audit Metadata
Analyzed At
Mar 21, 2026, 06:48 PM
Package URL
pkg:socket/skills-sh/lev-os%2Fagents%2Fwork%2F@934330fa703bc28a8e57459363fd0a3a884624c3
Security Audit — socket — work