skills/mukul975/anthropic-cybersecurity-skills/performing-gcp-security-assessment-with-forseti/Socket
performing-gcp-security-assessment-with-forseti
Warn
Audited by Socket on Apr 13, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill is broadly consistent with GCP security assessment, but it grants an AI agent high-impact cloud auditing capability, expects broad org-level permissions, and forwards service-account credentials to an unpinned third-party auditor. No clear exfiltration or malicious endpoint is shown, so this is high-risk vulnerable behavior rather than confirmed malware.
Confidence: 85%Severity: 72%
Audit Metadata