gcp-expert

Fail

Audited by Socket on Mar 8, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The gcp-expert skill appears to be a legitimate guidance and code-example resource for GCP best practices, focused on secure design, architecture, and cloud-native patterns. Its footprint is coherent with the stated purpose: no downloading of external binaries, no credential harvesting, and emphasis on ADC/Secret Manager, least-privilege IAM, and proper client reuse. While the content is largely safe, practitioners should ensure that any shared code examples adhere strictly to least-privilege principles, avoid hard-coding credentials, and keep secrets out of logs. Overall risk is low to moderate (benign to suspicious only if misapplied), with no evident data exfiltration or supply-chain concerns in the provided material.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 8, 2026, 02:14 PM
Package URL
pkg:socket/skills-sh/yasuwrldhyper%2Fai-skills-collection%2Fgcp-expert%2F@64dc58f35b9febf6c50c0c0a5fa15ff48b9fa4ad