gcloud

Fail

Audited by Socket on Mar 1, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

This is a legitimate GCP management skill/documentation that instructs users to install and use the official Google Cloud SDK, gsutil, and firebase-tools CLIs and demonstrates standard gcloud/gsutil/firebase commands for project, compute, Cloud Run, Firebase Hosting, storage, logging, secrets, artifact registry, and Cloud SQL. No signs of malicious code, unknown third-party exfiltration endpoints, obfuscation, or credential-harvesting behavior are present in the provided text. The main supply-chain/security considerations are: (1) the documented download-and-run installer pattern (curl download + run install.sh) — acceptable when using the official dl.google.com URL but inherently higher-risk if the source changes or is not verified, and (2) examples that echo or inline secrets which can leak secrets via shell history or process listings. Overall the content is coherent with its stated purpose and uses appropriate official sources.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 1, 2026, 05:15 AM
Package URL
pkg:socket/skills-sh/ThinkfleetAI%2Fthinkfleet-engine%2Fgcloud%2F@c69aeb1a19e12fa596c6f2b69ec358958d75f5a2