mikrotik-routeros-rsc
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
AnomalyAnomalyreferences/EXAMPLES.md
LOWAnomalyLOW
references/EXAMPLES.md
The code is a set of readable RouterOS documentation examples and does not show clear malicious intent. The primary security concern is the remote-fetch-then-import pattern, which creates a direct supply-chain/configuration execution risk if the URL, server, TLS trust, or downloaded file is compromised. The privileged recurring scheduler and broad firewall rule also warrant operational review. The remote file should be authenticated with an allowlisted trusted source and cryptographic integrity verification before import.
Confidence: 98%Severity: 62%
Audit Metadata