cloud-devops

Warn

Audited by Socket on Apr 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the bundle is coherent as a DevOps workflow, but its real footprint is transitive delegation to many unverified third-party skills, including penetration-testing capabilities. The main risk is trust expansion beyond the reviewed document, not direct malware behavior in this bundle itself.

Confidence: 86%Severity: 74%
Audit Metadata
Analyzed At
Apr 1, 2026, 03:42 AM
Package URL
pkg:socket/skills-sh/bcastelino%2Fagent-skills-kit%2Fcloud-devops%2F@6acce11de97c9595a103c08dac0cd40f4b0339de
Security Audit — socket — cloud-devops