hyprland

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Security
SecurityMEDIUM
install.sh

Overall, the module is a git-based installer that introduces a major supply-chain execution risk by sourcing a repository-controlled file (.wiki-version) into the current shell during installation/update, without any integrity/pinning verification of fetched content. While the snippet itself does not visibly implement malware/exfiltration, it can enable arbitrary command execution if the upstream repository (or that specific file) is compromised. Additionally, the rm -rf "$TARGET" behavior increases blast radius if TARGET can be influenced outside expected directories.

Confidence: 72%Severity: 78%
Audit Metadata
Analyzed At
Sep 16, 2026, 03:30 AM
Package URL
pkg:socket/skills-sh/marceloeatworld%2Fhyprland-ai-skill%2Fhyprland%2F@8117d5083822516365f35853d0bfb03f7a7d60cb
Security Audit — socket — hyprland