qmt-docs
Warn
Audited by Socket on May 15, 2026
1 alert found:
AnomalyAnomalyreferences/python-innerApi/code_examples.md
LOWAnomalyLOW
references/python-innerApi/code_examples.md
No clear evidence of intentional malware (no obfuscation, no dynamic execution, no suspicious external networking, no credential theft) is present in the provided fragment. The dominant security concern is operational impact: multiple examples demonstrate automated order placement/cancellation and persisted extension-data writes, while extensive print/logging can leak market and trading/account data to logs. Overall, the module appears to be trading-platform example code, but due to high-impact sinks (passorder/algo_passorder/cancel and set_extend_data_value), it warrants careful review and safe-guarding when used or adapted in any automated pipeline.
Confidence: 58%Severity: 57%
Audit Metadata