helm-deploy

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The helm-deploy skill appears benign and coherent with a Kubernetes/OpenShift Helm deployment workflow. It uses standard, well-known tools (oc/helm) and relies on explicit human confirmations for critical steps, reducing automation risk. There are no evident download-execute chains, no unverifiable binaries, and no credential harvesting patterns. The data flows are limited to cluster interactions and user-provided configuration, aligning with its stated purpose. Overall risk is low to moderate due to typical cluster credential usage, but within expected bounds for a deployment automation tool.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 04:05 PM
Package URL
pkg:socket/skills-sh/RHEcosystemAppEng%2Fagentic-collections%2Fhelm-deploy%2F@a9b3b6b7c65a270970e2202a49fece9a86ce1393