advanced-kubernetes

Warn

Audited by Socket on Aug 25, 2026

1 alert found:

Anomaly
AnomalyLOW
scripts/setup-operator-dev.sh

No clear indicators of intentional malware (no exfiltration, backdoors, or suspicious runtime behaviors) are present in this fragment. The primary concern is supply-chain integrity: the script installs an internet-fetched executable into a privileged system path without checksum/signature verification and installs kind using a mutable `@latest` tag, and it applies a remote manifest without integrity pinning. These weaknesses materially increase risk if upstream artifacts or delivery endpoints are compromised.

Confidence: 74%Severity: 60%
Audit Metadata
Analyzed At
Aug 25, 2026, 05:06 PM
Package URL
pkg:socket/skills-sh/williamzujkowski%2Fstandards%2Fadvanced-kubernetes%2F@ed9ac66c85c980f8ec741439c671dead11d1749af530920906409775ecaa9cff
Security Audit — socket — advanced-kubernetes