django-deployment

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Django deployment skill presents a coherent, proportionate, and industry-standard approach to producing a production-ready Django environment. Its use of authoritative, well-known sources (official Docker images, gunicorn, WhiteNoise, nginx) reduces supply-chain risk. The primary concerns relate to secret handling in environment files (necessitating proper secret management and never committing real secrets) and ensuring that any .env/.env.example exposure is avoided. No evidence suggests credential forwarding to unknown third-party binaries, no autonomous real-world actions beyond standard deployment, and no exposed exfiltration behavior. Overall, the footprint is benign and well-aligned with the stated purpose of production-ready Django deployment guidance.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 09:07 PM
Package URL
pkg:socket/skills-sh/ristemingov%2Fdjango-claude-setup%2Fdjango-deployment%2F@43fa7e609d18bf7975ce451eec117fbed7757921