tf-plan

Warn

Audited by Socket on Aug 31, 2026

1 alert found:

Security
SecurityMEDIUM
evals/cases/bad-tfplan-unbound-apply/tfplan.json

No evidence of malware or obfuscation exists in this fragment because it contains only declarative Terraform-like provisioning data. However, it includes a production database password in plaintext within the artifact, which is a severe secret-handling/supply-chain hygiene failure. This creates a high risk of credential leakage through build/CI logs and distributed plan artifacts; the SSM SecureString configuration suggests sensitive data management is intended, but the plaintext RDS credentials must be removed and replaced with proper secret references (e.g., external secret manager/SSM lookups) to mitigate exposure.

Confidence: 75%Severity: 88%
Audit Metadata
Analyzed At
Aug 31, 2026, 09:21 AM
Package URL
pkg:socket/skills-sh/anmolnagpal%2Fdevops-skills%2Ftf-plan%2F@15e42dddde767c39555dd5d58adfb55ae482a850758700d75d23d0776c288b42
Security Audit — socket — tf-plan