docker-production

Fail

Audited by Socket on Feb 13, 2026

2 alerts found:

Obfuscated FilefilesystemAccess
Obfuscated FileHIGH
SKILL.md

The chosen report presents a coherent, production-focused Docker deployment strategy with health checks, resource limits, logging, and a Prometheus/Grafana/cadvisor observability stack. Secrets are handled via environment variables, which is common but should be secured with a secret store and access controls. Cadvisor/docker.sock access is standard for observability but requires careful isolation and RBAC. The overall footprint aligns with the intended purpose, with actionable security improvements to mitigate elevated host access and credential exposure risks.

Confidence: 98%
filesystemAccessLOW
scripts/validate.py
Audit Metadata
Analyzed At
Feb 13, 2026, 02:13 AM
Package URL
pkg:socket/skills-sh/pluginagentmarketplace%2Fcustom-plugin-docker%2Fdocker-production%2F@ddd0acb98571ce7e18cf200b4c6024d8e2c30cab