apify-actorization
Warn
Audited by Socket on Sep 16, 2026
1 alert found:
AnomalyAnomalyreferences/cli-actorization.md
LOWAnomalyLOW
references/cli-actorization.md
No clear malware or intentional sabotage is present in this documentation and example code. The main security risk is the Dockerfile's unverified `curl | sh` execution and unpinned installation of GitHub and npm dependencies, which could permit a compromised upstream or mutable dependency to execute during builds. Pin versions, verify checksums or signatures, and avoid piping remote content directly to a shell.
Confidence: 98%Severity: 52%
Audit Metadata