anthropic-managed-agents

Warn

Audited by Socket on Apr 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is purpose-aligned and uses Anthropic's official API directly, so it is not deceptive or overtly malicious. However, it enables high-impact remote agent execution with bash/web/write tools, recommends unrestricted networking, and forwards GitHub credentials and secrets into Anthropic-managed sessions, making the overall security posture medium-to-high risk.

Confidence: 89%Severity: 64%
Audit Metadata
Analyzed At
Apr 17, 2026, 04:46 PM
Package URL
pkg:socket/skills-sh/vm0-ai%2Fvm0-skills%2Fanthropic-managed-agents%2F@fa6750a6c60c39ad7493475c11e0468bdb28499d