directus

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The analyzed fragment is benign with respect to supply-chain security. It presents legitimate deployment and usage patterns for Directus (a known open-source CMS) and does not exhibit malicious data flows, credential harvesting, or unauthorized network activity. The main security considerations are configuration-related (ensuring proper role permissions and securing public endpoints) rather than code-driven threats. Recommend standard hardening recommendations for production (least privilege roles, TLS, secure secret management, and regular supply-chain hygiene for the Docker image).

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 1, 2026, 08:44 PM
Package URL
pkg:socket/skills-sh/TerminalSkills%2Fskills%2Fdirectus%2F@a978eb83dad37501a4565c6122703404cd2ed053