Rp1
Medium
- Category
- MCP Rug Pull
- Confidence
- 75% confidence
- Finding
- Docker image references without a specific tag (:latest is implicit) or digest (@sha256:...) can be silently replaced by a malicious image.
Security audit
Security checks for vulnerabilities and agentic risk
This is a straightforward Docker command reference, but users should be careful with cleanup commands, bind mounts, and floating image tags.
Install only if you want a Docker command cheat sheet. Before copying commands, review any image tags, avoid floating tags for production, and be especially careful with docker rm, docker prune, docker system prune --volumes, and bind mounts because they can delete Docker resources or expose host files.
No suspicious patterns detected.