tia-import-export

Warn

Audited by Socket on Jun 16, 2026

1 alert found:

Anomaly
AnomalyLOW
references/hmi-tags-and-data.md

This code is primarily a TIA Portal Openness export/import utility that serializes HMI configuration objects to XML files and re-ingests them into a target engineering project. It contains no overt classic malware behavior (no network/process execution/obfuscation), but it does carry meaningful supply-chain integrity risk: it imports attacker-tampered XML using ImportOptions.Override and it supports importing VB script artifacts into the TIA project, which could introduce malicious/undesired executable logic depending on how TIA handles imported scripts. Additionally, export filename construction uses unvalidated project object names in filesystem paths, which could enable unintended file writes if names contain special path characters.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
Jun 16, 2026, 09:57 AM
Package URL
pkg:socket/skills-sh/Czarnak%2Ftotally-integrated-claude%2Ftia-import-export%2F@61f318e1a8019769445e8ee857cf31bd8165075ab9f1475ed82a4334d09074f7
Security Audit — socket — tia-import-export