ooo
Audited by Socket on Jul 28, 2026
2 alerts found:
SecurityAnomalySUSPICIOUS: the core purpose is coherent, but the actual footprint is broader than needed and the install chain is inconsistent. The biggest concerns are third-party/transitive skill installation, bash-based setup, and credential-bearing execution through external harnesses and runtimes.
No direct evidence of malware (e.g., backdoors, credential theft, exfiltration, reverse shells, or persistence) is observable in this installer fragment itself. The dominant risk is supply-chain exposure: it automatically fetches and installs multiple third-party components from public sources (including a git ref defaulting to “main”) and executes additional local helper/sibling installer scripts that are not part of this review. Review/pin versions/refs and inspect the invoked helper scripts and installed packages for integrity and unexpected behavior.