vibe-delegate

Warn

Audited by Socket on Sep 2, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core purpose is coherent, and the main CLI/auth flow appears official and proportionate, so this is not confirmed malware. The main concerns are transitive trust in a community-published wrapper, missing bundled runtime, and the option to grant a delegated agent arbitrary shell access under --full-access.

Confidence: 88%Severity: 64%
Audit Metadata
Analyzed At
Sep 2, 2026, 06:42 PM
Package URL
pkg:socket/skills-sh/sickn33%2Fagentic-awesome-skills%2Fvibe-delegate%2F@b5eebc7ef498ef7e6ce0c70dc2fbb6064a37ecac5f57d496f9793b9eafd7dc2e
Security Audit — socket — vibe-delegate