motion-doctrine
Warn
Audited by Socket on Jul 16, 2026
1 alert found:
AnomalyAnomalyscripts/seam-stamp.mjs
LOWAnomalyLOW
scripts/seam-stamp.mjs
No explicit malicious payload (exfiltration, persistence, or network activity) is present in this module. However, it is a powerful code generator that embeds unescaped ledger-controlled selector values into executable JavaScript and can write modified HTML/JS to an arbitrary path supplied via --write. If an attacker can control the ledger content and/or CLI paths, the most significant threats are JavaScript injection into the output asset and unauthorized file read/write within the runner’s permissions.
Confidence: 74%Severity: 62%
Audit Metadata