Multi-Cloud Deployment

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Suspicious/high-risk skill. Its stated purpose matches its capabilities, but the purpose itself is offensive: it helps an AI agent prepare and deploy multi-cloud red-team infrastructure, including C2- and scanning-oriented region choices, using highly privileged cloud credentials across many providers. I see no clear credential-exfiltration or deceptive installer behavior in the provided text, so this is not confirmed malware, but it is a materially risky offensive-security skill with significant real-world impact potential.

Confidence: 89%Severity: 76%
Audit Metadata
Analyzed At
Apr 29, 2026, 03:51 PM
Package URL
pkg:socket/skills-sh/wgpsec%2Fredc-template%2Fmulti-cloud-deployment%2F@2989b0c7d166823ebf0962bd0af106d3cda6faaf