agent-swarm

Warn

Audited by Socket on Apr 19, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core orchestration purpose is coherent, but the footprint is broader and less transparent than advertised. Main concerns are dependency misstatement, hidden reliance on external AI CLIs and tokens, shell-command execution from job files, and elevated prompt-injection risk when processing untrusted content with Bash-enabled agents.

Confidence: 85%Severity: 61%
Audit Metadata
Analyzed At
Apr 19, 2026, 10:51 AM
Package URL
pkg:socket/skills-sh/richfrem%2Fagent-plugins-skills%2Fagent-swarm%2F@2d38458318ec7770929fb955179d6fef10ab02be