postgres

Warn

Audited by Socket on Jul 15, 2026

1 alert found:

Security
SecurityMEDIUM
connections.example.json

No malicious code is present in this JSON-only configuration. However, it includes plaintext database credentials for multiple environments, creating a significant secrets-leak and unauthorized-access risk if the artifact is distributed, committed, or logged. Credentials should be removed from the artifact and replaced with secret manager/environment-variable references, followed by credential rotation.

Confidence: 77%Severity: 75%
Audit Metadata
Analyzed At
Jul 15, 2026, 12:56 PM
Package URL
pkg:socket/skills-sh/Lua2147%2Fclaude-toolkit-catalog%2Fpostgres%2F@d8ef4db3e413c977f7b852b075cd8e6e67dc9eae3119c00c3a47669a43b4806b
Security Audit — socket — postgres