docker-compose

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Docker Compose skill presents a consistent, safety-aligned surface: it documents legitimate orchestration commands, failure modes, and best practices for multi-container deployments. There are no download/install-from-unknown-source patterns, no credential harvesting flows, and no out-of-band data exfiltration. The main proportional risk stems from users placing sensitive data in compose files or environment variables; this is a standard operational consideration rather than a capability of the skill itself. Overall, the footprint is benign and aligned with its stated purpose, with only minor operational data-sensitivity considerations.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 06:47 AM
Package URL
pkg:socket/skills-sh/L3DigitalNet%2FClaude-Code-Plugins%2Fdocker-compose%2F@e4cae55a24f0cb7923e6cae9052963eae886cf57