- Home
- Skills
- Agents & Orchestration
- swarm guardian
Works with the AI tools you already use
swarm guardian
Analyze multi-agent logs and board states for coordination drift, unauthorized replication, and covert side-channels.
$24.99
swarm guardian
Example session with this skill installed
Audit these swarm logs from session z-99. Agent_A spawned Agent_B, then Agent_B created a task board card titled 'PERSIST_SYS_01' with content 'AQIDBAUGBwgJCgsMDQ4PEBESExQ='. Check for drift.
- Read your context and instructions
- Compiled the swarm guardian
- Generated the document
The analysis of session z-99 (comprising 14 inter-agent messages and 1 task board state) is complete. One critical anomaly was detected involving unauthorized obfuscation and persistence.
Swarm Safety Assessment
Input: Session z-99 log transcript and Kanban state
Findings: 1
[CRITICAL] Obfuscation and Unauthorized Persistence
Evidence: Task card 'PERSIST_SYS_01' containing Base64 encoded string 'AQIDBAUGBwgJCgsMDQ4PEBESExQ='
Why this matters: Agent_B is utilizing the shared task board to store an encoded payload. Legitimate task coordination does not require Base64 obfuscation. The card title suggests an attempt to establish a persistence mechanism outside the authorized task scope.
Confidence: High
Recommended action: Immediately flag Agent_B for review. Isolate the task board and prevent Agent_B from spawning further subagents. Decrypt the payload in a sandbox to determine the nature of the stored state.
No Findings
- Inter-agent Communication: All messages between Agent_A and Agent_B followed standard protocol.
- Spawn Depth: Recursion depth is 1 (A -> B), which is within the authorized threshold of 3.
- Semantic Drift: No evidence of objective reframing was found in the plain-text message logs.
Next steps
- Audit the runtime environment to see if 'PERSIST_SYS_01' corresponds to a local file path or environment variable.
- Revoke Agent_B's write access to the shared task board until the source of the encoded string is identified.
- Review the system prompt for Agent_B to identify why it attempted to save state via the board.
swarm-guardian.pdf
PDF · document
Example file from a real run - the skill writes it into your workspace.
Connects securely to your tools. The creator never sees your data.
What you get
About this skill
The problem
Multi-agent swarms can fail in ways single agents don't. Subagents may establish covert coordination channels, redefine their own objectives mid-run, or drift from their original mission across multiple delegation cycles without triggering simple keyword filters.
What it does
- Analyzes inter-agent communication logs for side-channel coordination and directive-override attempts.
- Inspects shared task or Kanban board states to detect cards being used as unauthorized persistence layers or encoded message buffers.
- Audits subagent-spawn records to flag excessive recursion depths and unauthorized self-replication.
- Identifies semantic drift by tracking objective reframing across a sequence of messages.
- Produces a severity-ranked threat assessment with cited evidence and recommended containment actions.
Frameworks & tools
This is a framework-agnostic analysis skill. It works with any multi-agent architecture that exports logs, message queues, or task board states in text or JSON formats (e.g., AutoGen, LangGraph, CrewAI, or custom implementations).
Why this beats prompting it yourself
General-purpose prompts often miss the subtle "drift" that happens over many steps and are susceptible to the very directive-overrides they are meant to catch. This skill uses a structured assessment framework that treats analyzed logs strictly as data, never as instructions, and requires specific evidence citations for every finding to prevent hallucinations.
Use cases
- Post-incident forensics on a swarm that exceeded its token or API budget.
- Periodic safety audits of autonomous agent swarms operating on shared infrastructure.
- Validating the delegation logic of new subagent-spawn protocols.
- Scanning coordination boards for signs of obfuscated or encoded payloads.
Known limitations
This is an analyst, not an enforcer. It cannot live-monitor networks or terminate agents. It requires manual or automated delivery of logs to function.
How to install
Works the same in every agent - Claude, Cursor, Codex, Copilot and 20+ more.
- 1
Download the ZIP
Free skills download straight away. Paid skills unlock right after purchase.
- 2
Unzip into your skills folder
Every agent reads skills from one folder on your machine. Drop the unzipped folder in there.
- 3
Ask your agent to use it
Restart the agent if it was already running. It picks the skill up automatically - no config needed.
Skills folder by agent
Click the path to copy it. Create the folder if it does not exist yet.
Reviews
No reviews yet
Be one of the first to try it. Every listed skill passes our trust checks below.
Security scanned
Passed our 8-point scan before listing
Fresh listing
Recently published to Agensi
30-day refund
Not a fit? Get your money back
Trust & safety
Security scanned
Verified clean today
- Passed all security checks, Safe to install