backup-disaster-recovery

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
references/disaster-recovery-plan-template.md

This YAML file is not malicious code, but it contains plaintext credentials in a Kubernetes Secret manifest co-located with an operational runbook. That represents a high operational security risk: secrets committed to a repository or applied to a cluster can be exfiltrated, leading to compromise of AWS resources and DR infrastructure. Treat embedded credentials as potentially compromised, remove them from source control, rotate any real keys, and adopt a secrets management solution and stricter RBAC.

Confidence: 85%Severity: 78%
Audit Metadata
Analyzed At
Mar 18, 2026, 04:49 PM
Package URL
pkg:socket/skills-sh/aj-geddes%2Fuseful-ai-prompts%2Fbackup-disaster-recovery%2F@d8d7cb4dcdde7cc115149946050bed71463c9894