sops-age-secrets
Warn
Audited by Snyk on Mar 1, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 1.00). The skill's CI/Docker examples explicitly download and install a remote binary at runtime (e.g. https://github.com/getsops/sops/releases/download/v3.9.0/sops-v3.9.0.linux.amd64), which fetches and enables execution of remote code and is presented as a required dependency for the workflows.
Audit Metadata