ops-nzbgeek
Audited by Socket on Mar 17, 2026
1 alert found:
AnomalyThe Python code itself contains no direct malicious logic (no hardcoded secrets, no eval/exec, no network calls). However, it executes an external shell script located at ~/.pi/skills/interview/run.sh and fully trusts that script's output (parsing stdout as JSON). That makes this module a supply-chain/execution-risk vector: if the run.sh is malicious or replaced, an attacker can control program flow, provide arbitrary JSON, or read the session file. Therefore the code is low-risk by itself but exposes substantial risk due to executing and trusting an unverified external script. Recommend validating or signing run.sh, restricting its location/permissions, validating the JSON output before use, and avoiding running untrusted local scripts.