google-cicd-pipeline-design

Warn

Audited by Socket on May 6, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The core purpose is coherent for a GCP CI/CD design skill, and the named external tools are official. The main concerns are transitive skill activation with unverified provenance, autonomous consumption of local repository content that can influence later execution, and the ability to drive real cloud changes via Terraform or gcloud.

Confidence: 84%Severity: 54%
Audit Metadata
Analyzed At
May 6, 2026, 09:49 PM
Package URL
pkg:socket/skills-sh/gemini-cli-extensions%2Fcicd%2Fgoogle-cicd-pipeline-design%2F@97e2f99f877d3b6d4fae0fe921a92a945cf7ecb5