deploy
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The Deploy skill presents a coherent, purpose-aligned workflow for creating Kubernetes/OpenShift resources from a container image with port detection, manual confirmations, and rollout monitoring. It minimizes risk by requiring user approval before applying changes and relies on cluster-native APIs rather than external executables or credential harvesting. Overall risk posture is low to moderate (benign). No evident credential exposure, supply-chain, or data exfiltration patterns observed. The primary risk is potential YAML injection through templating if inputs are not validated, but this is mitigated by human-in-the-loop approvals and template boundaries.
Confidence: 98%
Audit Metadata