huawei-cloud-cce-cluster-management
Warn
Audited by Socket on Aug 27, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s capabilities broadly match its stated Huawei CCE management purpose, and most data flows appear to target official Huawei services. Main risks are supply-chain trust from curl-to-bash installation, credential forwarding into external CLI/plugin tooling, and transitive installation of another skill for kubectl-cce. This looks more like a powerful infrastructure-admin skill with meaningful operational and credential-handling risk than confirmed malware.
Confidence: 87%Severity: 64%
Audit Metadata