a6-plugin-fault-injection

Fail

Audited by Socket on Mar 9, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill is coherent with its stated purpose of configuring APISIX fault-injection for chaos engineering. Its footprint is proportionate, with no obvious credential access, unsolicited data exfiltration, or supply-chain risks. The main consideration is the intentional bypass of some security controls (e.g., authentication) due to early plugin execution, which is by design for fault injection but requires clear governance and per-action authorization to prevent abuse. Overall, the skill is BENIGN with elevated risk only in the context of misuse for unauthorized disruption; proper safeguards and access controls mitigate this risk.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 9, 2026, 02:58 PM
Package URL
pkg:socket/skills-sh/moonming%2Fa6%2Fa6-plugin-fault-injection%2F@54d49b5b30bba626ba49538fccfcfb16237fde52