vibe-delegate
Warn
Audited by Socket on Sep 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core purpose is coherent, and the main CLI/auth flow appears official and proportionate, so this is not confirmed malware. The main concerns are transitive trust in a community-published wrapper, missing bundled runtime, and the option to grant a delegated agent arbitrary shell access under --full-access.
Confidence: 88%Severity: 64%
Audit Metadata