fal-redesign
Warn
Audited by Socket on May 10, 2026
1 alert found:
AnomalyAnomalyruntime/src/review.mjs
LOWAnomalyLOW
runtime/src/review.mjs
This module is primarily an LLM-assisted website rewrite/screenshot pipeline with meaningful security exposure: it transmits the full local HTML and rendered screenshot to external AI services, and it writes unsanitized LLM-generated HTML back to index.html (potentially introducing executable client-side content). While there is no direct evidence of backdoor/credential-stealing logic in this fragment, the trust boundary is large and the content-integrity risk is substantial if the resulting HTML is ever served or if the brief/HTML can be adversarial.
Confidence: 67%Severity: 58%
Audit Metadata