devops-deployer

Fail

Audited by Socket on Mar 3, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The fragment is a solid, documentation-style DevOps deployment guide that covers essential tooling and patterns for CI/CD, containerization, and IaC. It presents realistic workflows and security-conscious patterns, with minor operational risks mainly around secret hygiene, action version pinning, and environment pinning. Overall, the material is benign and fit for purpose when implemented with proper secret masking, pinned action versions, and explicit deployment commands. Recommended improvements include pinning external actions to specific versions, replacing placeholder deploy steps with concrete automation, and clarifying secret-scoping and rotation policies.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 3, 2026, 07:31 PM
Package URL
pkg:socket/skills-sh/NaveDanan%2Fbackground-remover%2Fdevops-deployer%2F@7a1f8465c2f0b1dfac355c6aaf848f4b86e10d61