az

Warn

Audited by Socket on Sep 6, 2026

2 alerts found:

Anomalyx2
AnomalyLOW
scripts/install.ps1

This is likely a legitimate Azure CLI installer, but it carries a meaningful supply-chain integrity risk on Debian/Ubuntu: it downloads an external script from a redirect endpoint and executes it as root without any explicit checksum/signature validation or safer temp handling. No direct evidence of malware behavior (exfiltration/backdoor/credential theft) is present in the provided code, but the unverified remote code execution step warrants security review and hardening (e.g., pinned versions and cryptographic verification).

Confidence: 64%Severity: 52%
AnomalyLOW
scripts/install.sh

No direct malware behaviors are evident in the provided script. The dominant security concern is the Debian/Ubuntu install path that downloads and executes a remote script as root via curl -sL ... | sudo bash without integrity verification/pinning in this snippet. Everything else is straightforward OS detection, package installation via standard managers, and post-install verification with az --version.

Confidence: 70%Severity: 57%
Audit Metadata
Analyzed At
Sep 6, 2026, 10:41 AM
Package URL
pkg:socket/skills-sh/klh%2Fspeedy-claude%2Faz%2F@e0d8c31592ee290410d40e867864159cc2ab6d75990f41f534ee57cd9f83dd0a
Security Audit — socket — az