cloud-security-posture

Warn

Audited by Socket on May 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is not overtly malicious and contains no installer, credential forwarding, or explicit exfiltration, but its actual footprint is poorly scoped: a vague cloud-posture helper with unrestricted Bash and a broad pentesting/security mandate. The main risk is disproportionate capability relative to the loosely defined purpose.

Confidence: 84%Severity: 68%
Audit Metadata
Analyzed At
May 4, 2026, 02:31 PM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fcloud-security-posture%2F@8e84f371a1c24727c11a5ee1e11cd0d9eb6e0142