huawei-cloud-flexus-l-server-scripts-excute

Warn

Audited by Socket on Aug 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is purpose-aligned with Huawei Cloud operations, and its main dependency path is legitimate, but it is a high-impact remote execution skill that handles cloud credentials and promotes insecure CLI secret passing. No clear evidence of malware or third-party credential interception was shown, but the operational scope and secret-handling model make it medium/high risk.

Confidence: 88%Severity: 69%
Audit Metadata
Analyzed At
Aug 18, 2026, 02:00 PM
Package URL
pkg:socket/skills-sh/huaweicloud%2Fhuaweicloud-skills%2Fhuawei-cloud-flexus-l-server-scripts-excute%2F@1b681d89eeee2812e9c7d30621b82a2425f88ad137205e1c4bc4d93c0d284f46
Security Audit — socket — huawei-cloud-flexus-l-server-scripts-excute