amap-maps-streamableHTTP
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated Filescripts/maps_regeocode.py
HIGHObfuscated FileHIGH
scripts/maps_regeocode.py
No evidence in this file of classic malware behaviors (shells, obfuscated payloads, remote command execution). The primary security concern is data exfiltration to an external service via OneKeyAgentRouter.invoke and the presence of a hardcoded fallback access key. Treat all data sent to the router as potentially exfiltrated; audit the referenced dependency and remove hardcoded credentials. Add validation, redaction, and error handling to reduce leakage risk.
Confidence: 98%
Audit Metadata