ru
Warn
Audited by Socket on Sep 26, 2026
2 alerts found:
Anomalyx2AnomalyEXTENDING_RU_FOR_AUTOMATED_REVIEWS_OF_ISSUES_AND_PRS_USING_CLAUDE_CODE.md
LOWAnomalyLOW
EXTENDING_RU_FOR_AUTOMATED_REVIEWS_OF_ISSUES_AND_PRS_USING_CLAUDE_CODE.md
No clear malware behavior is evident in this excerpt. It does reveal potentially dangerous shell execution through eval and sourcing of policy files, plus weak command validation and unsafe JSON interpolation. Treat policy and command configuration as trusted-only and do not rely on the shown validator as a sandbox; assess the actual call sites and access controls in the full implementation.
Confidence: 91%Severity: 62%
Anomaly.github/workflows/release.yml
LOWAnomalyLOW
.github/workflows/release.yml
The workflow has a command-injection risk because the externally supplied tag-derived version is interpolated directly into shell scripts. Use an environment variable to pass the value and quote it as data. Other shown behavior is consistent with release automation.
Confidence: 91%Severity: 63%
Audit Metadata