vm-create

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The vm-create skill presents a coherent, purpose-aligned capability: it provisions OpenShift Virtual Machines via in-cluster MCP tooling with explicit human-in-the-loop controls. Its footprint—reliance on Kubernetes/OpenShift APIs, RBAC, and cluster resources—falls within expected boundaries for a VM provisioning helper. No evidence of unsafe download/execute chains, credential harvesting, or data exfiltration was found. The security posture is moderate but acceptable given the explicit confirmation prompts and scoped access. Overall, the skill is BENIGN with respect to security risk, albeit with notable operational impact due to resource consumption and cluster permissions.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 04:05 PM
Package URL
pkg:socket/skills-sh/RHEcosystemAppEng%2Fagentic-collections%2Fvm-create%2F@4c87d288c613744775bb85bae9461c6905dd22b7