fortytwo-mcp

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Anomaly
AnomalyLOW
scripts/fortytwo_query.py

The code is primarily a paid API/MCP client and does not show clear malware, credential theft, or destructive behavior. It does expose a high-impact payment flow: any compromised or malicious gateway response could cause the configured private key to authorize payment to an attacker-selected recipient and amount, subject to the token authorization semantics. The lack of explicit confirmation and insecure /tmp session storage are significant security weaknesses. The code as pasted is also syntactically incomplete at the final main( call.

Confidence: 96%Severity: 68%
Audit Metadata
Analyzed At
Sep 15, 2026, 02:00 PM
Package URL
pkg:socket/skills-sh/fortytwo-network%2Ffortytwo-mcp-skills%2Ffortytwo-mcp%2F@9220ceefd3876e966692e2491ec4f285f5886cef2276f3abc6fa6cf87fc9a455
Security Audit — socket — fortytwo-mcp