Scan Report
15 /100
calling-agent-squad
Activate a multi-agent team (the Squad) to manage complex projects, business tasks, or development workflows
This is a legitimate multi-agent coordination framework with no malicious behavior detected. The skill coordinates role-based sub-agents for project management tasks through an orchestrator pattern.
Safe to install
No immediate action required. Consider documenting allowed-tools requirements in SKILL.md for transparency. The hardcoded user path in squad-init.sh will cause failures on non-George systems.
Findings 2 items
| Severity | Finding | Location |
|---|---|---|
| Low | Missing allowed-tools declaration Doc Mismatch | SKILL.md:1 |
| Low | Hardcoded user path reduces portability Supply Chain | squad-init.sh:3 |
| Resource | Declared | Inferred | Status | Evidence |
|---|---|---|---|---|
| Filesystem | READ | READ | ✓ Aligned | Creates project folders in Documents/squad_projects/ per SKILL.md |
| Shell | NONE | READ | ✓ Aligned | squad-init.sh uses bash but is maintenance-only, not invoked during normal opera… |
| Network | NONE | NONE | — | No network activity observed |
| Environment | NONE | NONE | — | No environment variable access detected |
| Skill Invoke | NONE | READ | ✓ Aligned | spawns sub-agents via openclaw agent (documented in SKILL.md) |
| Clipboard | NONE | NONE | — | Not used |
| Browser | NONE | NONE | — | Not used |
| Database | NONE | NONE | — | Not used |
File Tree
51 files · 86.2 KB · 2455 lines Markdown 50f · 2435L
Shell 1f · 20L
├─
▾
agents
│ ├─
▾
architect
│ │ ├─
AGENTS.md
Markdown
│ │ ├─
HEARTBEAT.md
Markdown
│ │ ├─
IDENTITY.md
Markdown
│ │ ├─
SOUL.md
Markdown
│ │ ├─
TOOLS.md
Markdown
│ │ └─
USER.md
Markdown
│ ├─
▾
brand-reviewer
│ │ ├─
AGENTS.md
Markdown
│ │ ├─
HEARTBEAT.md
Markdown
│ │ ├─
IDENTITY.md
Markdown
│ │ ├─
SOUL.md
Markdown
│ │ ├─
TOOLS.md
Markdown
│ │ └─
USER.md
Markdown
│ ├─
▾
code-reviewer
│ │ ├─
AGENTS.md
Markdown
│ │ ├─
HEARTBEAT.md
Markdown
│ │ ├─
IDENTITY.md
Markdown
│ │ ├─
SOUL.md
Markdown
│ │ ├─
TOOLS.md
Markdown
│ │ └─
USER.md
Markdown
│ ├─
▾
coder
│ │ ├─
AGENTS.md
Markdown
│ │ ├─
HEARTBEAT.md
Markdown
│ │ ├─
IDENTITY.md
Markdown
│ │ ├─
SOUL.md
Markdown
│ │ ├─
TOOLS.md
Markdown
│ │ └─
USER.md
Markdown
│ ├─
▾
copywriter
│ │ ├─
AGENTS.md
Markdown
│ │ ├─
HEARTBEAT.md
Markdown
│ │ ├─
IDENTITY.md
Markdown
│ │ ├─
SOUL.md
Markdown
│ │ ├─
TOOLS.md
Markdown
│ │ └─
USER.md
Markdown
│ ├─
▾
observer
│ │ ├─
AGENTS.md
Markdown
│ │ ├─
HEARTBEAT.md
Markdown
│ │ ├─
IDENTITY.md
Markdown
│ │ ├─
SOUL.md
Markdown
│ │ ├─
TOOLS.md
Markdown
│ │ └─
USER.md
Markdown
│ ├─
▾
researcher
│ │ ├─
AGENTS.md
Markdown
│ │ ├─
HEARTBEAT.md
Markdown
│ │ ├─
IDENTITY.md
Markdown
│ │ ├─
SOUL.md
Markdown
│ │ ├─
TOOLS.md
Markdown
│ │ └─
USER.md
Markdown
│ └─
▾
squad-manager
│ ├─
AGENTS.md
Markdown
│ ├─
HEARTBEAT.md
Markdown
│ ├─
IDENTITY.md
Markdown
│ ├─
SOUL.md
Markdown
│ ├─
TOOLS.md
Markdown
│ └─
USER.md
Markdown
├─
▾
templates
│ └─
handbook.md
Markdown
├─
SKILL.md
Markdown
└─
squad-init.sh
Shell
Security Positives
✓ No credential harvesting - skill does not access ~/.ssh, ~/.aws, .env, or sensitive environment variables
✓ No data exfiltration - no external IP connections, POST requests, or data transmission observed
✓ No code obfuscation - no base64, eval(), or anti-analysis techniques found
✓ No remote script execution - no curl|bash, wget|sh, or similar patterns
✓ Behavior aligns with documentation - sub-agent spawning is declared in SKILL.md
✓ All 8 agent configs share identical AGENTS.md template - no hidden unique capabilities
✓ squad-init.sh only runs during explicit maintenance, not during normal skill operation