proj-deploy
Warn
Audited by Socket on Sep 23, 2026
1 alert found:
SecuritySecuritydocker-compose.md
MEDIUMSecurityMEDIUM
docker-compose.md
No direct malicious behavior is evident in the supplied Compose files. The principal security risks are exposed database and infrastructure ports, unauthenticated development Redis, the hardcoded Grafana password admin, secret exposure through environment variables and command arguments, broad host bind mounts, and non-immutable image tags. These issues should be remediated before production deployment, but the fragment alone does not demonstrate malware.
Confidence: 98%Severity: 72%
Audit Metadata