sealos-deploy

Warn

Audited by Socket on Apr 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the overall capability matches a Sealos deployment skill, and most file access, credentials, and network calls are proportionate. The main concern is the explicit disabling of TLS verification for all kubectl usage, plus moderate risk from forwarding GitHub credentials through external CLIs and performing real cloud actions on analyzed repo content.

Confidence: 87%Severity: 68%
Audit Metadata
Analyzed At
Apr 7, 2026, 09:04 AM
Package URL
pkg:socket/skills-sh/labring%2Fseakills%2Fsealos-deploy%2F@46c49f4c150f84e4ff7d6a22f7490bee0a269ed5