devops-cicd
Warn
Audited by Socket on Sep 16, 2026
1 alert found:
AnomalyAnomalytemplates/docker/docker-compose.yml
LOWAnomalyLOW
templates/docker/docker-compose.yml
No malicious behavior is evident in this Compose template. The primary risks are insecure default plaintext database credentials, unauthenticated Redis, and unnecessary host exposure of PostgreSQL and Redis. Use secrets, restrict port bindings to localhost or remove them, enable appropriate authentication, and pin images by immutable digest for production use.
Confidence: 99%Severity: 68%
Audit Metadata