backup-disaster-recovery
Warn
Audited by Socket on Mar 18, 2026
1 alert found:
SecuritySecurityreferences/disaster-recovery-plan-template.md
MEDIUMSecurityMEDIUM
references/disaster-recovery-plan-template.md
This YAML file is not malicious code, but it contains plaintext credentials in a Kubernetes Secret manifest co-located with an operational runbook. That represents a high operational security risk: secrets committed to a repository or applied to a cluster can be exfiltrated, leading to compromise of AWS resources and DR infrastructure. Treat embedded credentials as potentially compromised, remove them from source control, rotate any real keys, and adopt a secrets management solution and stricter RBAC.
Confidence: 85%Severity: 78%
Audit Metadata