design-mirror
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
AnomalyAnomalyscripts/screenshot.sh
LOWAnomalyLOW
scripts/screenshot.sh
The code implements a legitimate screenshot API wrapper and contains no clear malware or intentional data theft. It has notable security weaknesses: disabled TLS verification, insufficient JSON escaping, arbitrary remote URL fetching, and unrestricted output-file selection. These should be corrected before use in an untrusted-input context.
Confidence: 98%Severity: 62%
Audit Metadata