agent-job-background

Warn

Audited by Socket on May 22, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The visible purpose is coherent—background agent jobs in Docker with status checks—but the skill delegates autonomous code-changing work to a new containerized agent and may open PRs without per-action approval. Main risk comes from hidden implementation: unknown container image, unknown backend endpoint behind APP_URL, and possible forwarding of AGENT_JOB_TOKEN/USER_ID into another execution boundary. No evidence here of overt malware or a malicious installer, but the autonomy and opaque data flow make the skill medium-to-high risk.

Confidence: 82%Severity: 68%
Audit Metadata
Analyzed At
May 22, 2026, 04:18 PM
Package URL
pkg:socket/skills-sh/stephengpope%2Fthepopebot%2Fagent-job-background%2F@7a7426ff7e761d2d58b476c7f272ddad6f4b4f46
Security Audit — socket — agent-job-background