aep-executor

Warn

Audited by Socket on Sep 3, 2026

1 alert found:

Anomaly
AnomalyLOW
references/claude-native.md

No concrete evidence of intentional malware (e.g., exfiltration, backdoor behaviors, credential harvesting) is present in the provided fragment. However, the design contains multiple high-impact control-plane risk factors: execution of a worktree-local recovery script (`bash .dev-workflow/init.sh`), use of `--dangerously-skip-permissions` for detached background sessions, and insertion of free-form human text into prompts that drive autonomous continuation. Treat this as moderate security risk pending review of the actual orchestrator implementation and the safety/integrity of the recovery script and state handling.

Confidence: 46%Severity: 54%
Audit Metadata
Analyzed At
Sep 3, 2026, 11:02 AM
Package URL
pkg:socket/skills-sh/memorysaver%2Fagentic-engineering-patterns%2Faep-executor%2F@35cfdfaee7e5bc68722a42f167887121c82e7a78ae46876659bd16274e99738a
Security Audit — socket — aep-executor