telegram
Warn
Audited by Socket on Sep 16, 2026
1 alert found:
AnomalyAnomalyagents/openai.yaml
LOWAnomalyLOW
agents/openai.yaml
The fragment describes a legitimate Telegram notification and approval integration, not apparent malware. It contains a material command-injection risk in the declared curl command because JSON_PAYLOAD is interpolated into a shell single-quoted string without demonstrated escaping. Token handling and outbound operational-data transmission also require review of the missing implementation. The referenced npm package cannot be assessed from this YAML alone.
Confidence: 96%Severity: 62%
Audit Metadata