gpu-container-setup-flagos

Warn

Audited by Socket on Sep 16, 2026

2 alerts found:

Anomalyx2
AnomalyLOW
SKILL.md

SUSPICIOUS: the core purpose is legitimate and most capabilities fit GPU container setup, but the fallback chain is too permissive. Pulling and executing container images from web search or a third-party Harbor, then self-updating references based on those discoveries, creates a disproportionate supply-chain and indirect prompt-injection risk for an automation skill that launches privileged GPU containers.

Confidence: 86%Severity: 67%
AnomalyLOW
references/image-sources.md

This is a procedural container-image discovery guide, not executable malware. It contains no direct credential theft, data exfiltration, reverse shell, cryptomining, or destructive behavior. Its primary security concern is supply-chain trust: it pulls and executes images from multiple external registries, may accept web-discovered registries, uses mutable tags, and lacks digest/signature/provenance verification. The self-modification instruction increases configuration-integrity risk. Use authenticated trusted registries, immutable digests, signature verification, and manual review before adding discovered registries.

Confidence: 97%Severity: 62%
Audit Metadata
Analyzed At
Sep 16, 2026, 08:45 AM
Package URL
pkg:socket/skills-sh/flagos-ai%2Fskills%2Fgpu-container-setup-flagos%2F@672e2b8ce63092091a0621507de9e128d402249822b7cba5065f0e141be8012f
Security Audit — socket — gpu-container-setup-flagos