podwise
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
AnomalyAnomalyreferences/installation.md
LOWAnomalyLOW
references/installation.md
The supplied content is installation documentation and contains no direct evidence of malware. The curl-to-shell command, unpinned Homebrew tap, and unverified binaries introduce meaningful supply-chain risk because compromised upstream content could execute with local privileges. Review and verify the installer, pin versions or commits, validate checksums or signatures, and avoid exposing API keys during configuration display.
Confidence: 98%Severity: 58%
Audit Metadata