Apart from cold.skey and vrf.skey is there any security concerns when publically posting the remaining stake pool keys and operation certificate? Eg: cold.vkey, cold.counter, node.cert, kes.vkey, kes.skey and vrf.vkey.
No one will be able to generate a new node.cert without the cold.skey and no one will be able to determine leaderslots without the vrf.skey.
However, they will be able to spin up a core node using your operational certificate. Is there any issue with that?