base-images-and-rpms

Warn

Audited by Socket on Jul 9, 2026

1 alert found:

Anomaly
AnomalyLOW
scripts/base-images-and-rpms.sh

No direct malware indicators (obfuscation, eval, exfiltration, backdoor behaviors) are evident in this bash fragment. However, it is a high-impact automation orchestrator that downloads and executes remote GitLab scripts and auto-installs a runnable tool from a GitHub main-branch zip without pinning or integrity checks. If upstream scripts/tools are compromised or if an operator supplies a malicious path, this script can execute arbitrary code and perform git changes/PR creation. Treat as a supply-chain execution risk; verify and pin upstream script/tool versions and add integrity verification before use.

Confidence: 65%Severity: 60%
Audit Metadata
Analyzed At
Jul 9, 2026, 12:19 PM
Package URL
pkg:socket/skills-sh/redhat-developer%2Frhdh-skill%2Fbase-images-and-rpms%2F@4637b0ccd172e7f86d71ef4c7dbcf65b2c2a3b6af003792fc65c36097dbe00d4
Security Audit — socket — base-images-and-rpms