gcp-to-aws
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileThe skill presents a coherent, architecture-migration orchestration tool that operates on user-supplied Terraform IaC and maintains explicit phase-state progression. There are no evident patterns of credential harvesting, arbitrary code execution, or data exfiltration. The primary security considerations involve ensuring that any external API calls (pricing, validation) use official endpoints with proper authentication and that sensitive state/files are stored securely (proper access controls, encryption at rest in real deployments). Overall, the footprint is proportionate to its stated purpose as a Terraform-driven migration orchestrator; the risk posture is benign to low-moderate, with emphasis on secure handling of Terraform state and phase data.