db-postgres

Warn

Audited by Socket on Sep 17, 2026

1 alert found:

Anomaly
AnomalyLOW
references/replication.md

This is documentation and configuration guidance for PostgreSQL high availability and backup operations, not executable package code. It contains no evident malicious behavior, data exfiltration, backdoor, or sabotage logic. The main risks are operational and security misconfiguration: plaintext credentials, broad network exposure, destructive data-directory deletion commands, permissive replication access, and possible WAL disk exhaustion from replication slots. Credentials should be replaced with secret-managed values, services should be restricted to required interfaces, access rules should be narrowed, and destructive commands should be verified before execution.

Confidence: 99%Severity: 57%
Audit Metadata
Analyzed At
Sep 17, 2026, 01:06 AM
Package URL
pkg:socket/skills-sh/scottermonk%2Fagentautoflow%2Fdb-postgres%2F@908d992112dfdbae38b74100364e0be5fba0a83f75a5ddafe75e5ddbe380a8e9
Security Audit — socket — db-postgres