openrouter-reference-architecture
Warn
Audited by Socket on Sep 9, 2026
1 alert found:
AnomalyAnomalyreferences/microservice-architecture.md
LOWAnomalyLOW
references/microservice-architecture.md
No clear malicious behavior or supply-chain attack is present. The code is a conventional LLM worker and API gateway, but it has meaningful security and operational concerns: unauthenticated task-result access, possible disclosure of prompts and model outputs, unrestricted batching and provider usage, and a missing os import that can prevent startup. The external OpenRouter transmission is intentional according to the stated architecture.
Confidence: 96%Severity: 58%
Audit Metadata