session-handoff
Fail
Audited by Socket on Jun 18, 2026
1 alert found:
Obfuscated FileObfuscated File.DS_Store
HIGHObfuscated FileHIGH
.DS_Store
This artifact strongly suggests dynamic code execution capability (plaintext “eval” within a packed/binary blob) and likely contains embedded code/data components (blob/script/reference-like markers). However, the fragment is not sufficient to confirm malicious intent or concrete behaviors such as exfiltration, credential theft, persistence, or network activity. Treat this dependency as suspicious and require extraction/decompilation and runtime verification to determine whether eval is used for legitimate templating/generation or for executing attacker-supplied payloads.
Confidence: 90%
Audit Metadata