sre-runbooks

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The sre-runbooks skill presents a coherent footprint consistent with its stated purpose: managing incident response and maintenance runbooks via authenticated API/CLI interactions. The main data flows are standard API calls using an environment-held API key to fetch and execute runbooks, with outputs directed to the agent, monitoring, or pipelines. There are no evident supply-chain, credential-forwarding, or autonomous real-world action risks beyond the expected production-impact capabilities of runbooks themselves. Overall risk is Low-to-Medium (securityRisk ~ 0.25–0.35) due to production-impact potential and exposure of API keys in environment, but no malicious patterns identified.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 05:46 PM
Package URL
pkg:socket/skills-sh/alphaonedev%2Fopenclaw-graph%2Fsre-runbooks%2F@0b182ea91e3368b40dcb28633f866ae25aa8fdf2