tf-plan
Warn
Audited by Socket on Aug 31, 2026
1 alert found:
SecuritySecurityevals/cases/bad-tfplan-unbound-apply/tfplan.json
MEDIUMSecurityMEDIUM
evals/cases/bad-tfplan-unbound-apply/tfplan.json
No evidence of malware or obfuscation exists in this fragment because it contains only declarative Terraform-like provisioning data. However, it includes a production database password in plaintext within the artifact, which is a severe secret-handling/supply-chain hygiene failure. This creates a high risk of credential leakage through build/CI logs and distributed plan artifacts; the SSM SecureString configuration suggests sensitive data management is intended, but the plaintext RDS credentials must be removed and replaced with proper secret references (e.g., external secret manager/SSM lookups) to mitigate exposure.
Confidence: 75%Severity: 88%
Audit Metadata