ideogram-enterprise-rbac
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill aligns with its stated purpose of configuring enterprise SSO, RBAC, and organization management, and uses standard integration patterns (SAML/OIDC, role mappings, audit logging). Potential security concerns arise from environment-stored credentials, hard-coded callback/issuer values in examples, and broad Admin/delete permissions. Overall footprint is coherent with the purpose but requires strong secret management, per-tenant configurability, and tightened RBAC controls to minimize risk. Treat as SUSPICIOUS to BENIGN pending secure secret handling and explicit least-privilege enforcement.
Confidence: 98%
Audit Metadata