iac-security

Warn

Audited by Socket on Feb 26, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill description is benign and coherent with its stated purpose. It outlines legitimate tooling and workflows for IaC security scanning, with no evident malicious behavior, credential handling, or risky data flows within the fragment. Security risk is low in this descriptive context, though real-world deployment should ensure trusted sources for all tooling and locked dependencies to mitigate supply-chain risk in practice.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 26, 2026, 07:58 AM
Package URL
pkg:socket/skills-sh/hardw00t%2Fai-security-arsenal%2Fiac-security%2F@6987dad14d8ec091bfb15a32a740628feebfeae5