design-mirror

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Anomaly
AnomalyLOW
scripts/screenshot.sh

The code implements a legitimate screenshot API wrapper and contains no clear malware or intentional data theft. It has notable security weaknesses: disabled TLS verification, insufficient JSON escaping, arbitrary remote URL fetching, and unrestricted output-file selection. These should be corrected before use in an untrusted-input context.

Confidence: 98%Severity: 62%
Audit Metadata
Analyzed At
Sep 15, 2026, 02:11 PM
Package URL
pkg:socket/skills-sh/davila7%2Fclaude-code-templates%2Fdesign-mirror%2F@20bfbb56c224b3bf7a43333279984db1381f2961a4d893b5974a086671f0dbe0
Security Audit — socket — design-mirror