aha
Warn
Audited by Socket on Sep 14, 2026
1 alert found:
AnomalyAnomalycli/src/share.mjs
LOWAnomalyLOW
cli/src/share.mjs
The code implements a recognizable local sharing feature using cloudflared and does not show clear malicious behavior. It does execute external programs and downloads an executable without checksum or signature verification, creating a supply-chain and PATH-hijacking risk. The selected directory is intentionally exposed through a public temporary tunnel, so use with sensitive directories presents a significant data exposure risk. Malware likelihood is low, while operational security risk is moderate.
Confidence: 96%Severity: 58%
Audit Metadata