docker-development

Warn

Audited by Socket on Sep 19, 2026

1 alert found:

Security
SecurityMEDIUM
examples/docker-compose.sample.yml

The Compose file contains serious container security and secret-management weaknesses, especially Docker socket exposure, privileged execution, hardcoded credentials, broad host port exposure, host networking, and mutable image tags. These issues could enable host compromise or unauthorized access if a service is compromised. No direct evidence of malware, data exfiltration, persistence, or intentionally malicious code is present; the risks are configuration-based and appear deliberately included as scanner test cases.

Confidence: 99%Severity: 90%
Audit Metadata
Analyzed At
Sep 19, 2026, 02:18 AM
Package URL
pkg:socket/skills-sh/borghei%2Fclaude-skills%2Fdocker-development%2F@58ac77f97edd3a4f4754c583cbc265e2780790e9e4d91ee48b625f8aeba1730a
Security Audit — socket — docker-development