tia-import-export

Warn

Audited by Socket on Jun 26, 2026

1 alert found:

Anomaly
AnomalyLOW
references/hmi-tags-and-data.md

This code is primarily a TIA Portal Openness export/import utility that serializes HMI configuration objects to XML files and re-ingests them into a target engineering project. It contains no overt classic malware behavior (no network/process execution/obfuscation), but it does carry meaningful supply-chain integrity risk: it imports attacker-tampered XML using ImportOptions.Override and it supports importing VB script artifacts into the TIA project, which could introduce malicious/undesired executable logic depending on how TIA handles imported scripts. Additionally, export filename construction uses unvalidated project object names in filesystem paths, which could enable unintended file writes if names contain special path characters.

Confidence: 62%Severity: 58%
Audit Metadata
Analyzed At
Jun 26, 2026, 07:55 AM
Package URL
pkg:socket/skills-sh/Czarnak%2Ftotally-integrated-claude%2Ftia-import-export%2F@433884aebbe0df5d267ecb580ea642090fe4c2bfb9ec7479db83fb244dc33562
Security Audit — socket — tia-import-export