exa-incident-runbook

Warn

Audited by Socket on Mar 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill broadly aligns with incident response, but it is higher risk than a normal documentation skill because it grants production-changing kubectl capability and explicitly prints a Kubernetes-stored API key. The main concern is disproportionate credential exposure and high-impact operational actions; data flows are otherwise mostly coherent and there is no strong evidence of malware or third-party credential harvesting.

Confidence: 87%Severity: 66%
Audit Metadata
Analyzed At
Mar 24, 2026, 05:22 PM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Fexa-incident-runbook%2F@bfe2b37b3e6187742e018f7ccc4c024ef07d9a9a