build
Warn
Audited by Socket on Sep 10, 2026
1 alert found:
AnomalyAnomalyscripts/peer-build.mjs
LOWAnomalyLOW
scripts/peer-build.mjs
No explicit malicious payloads, credential theft, obfuscation, or direct network exfiltration are evident in this snippet. However, the module is a high-privilege orchestrator: it writes plan-derived prompts to disk and executes an externally constructed command (via runBounded with stdin=prompt and cwd=user-controlled worktree). Because buildInvocation/checkAuth/runBounded implementations are not shown, the primary supply-chain risk is that unsafe command/argument construction or insufficient sandboxing could allow command abuse or unintended side effects. Overall risk is moderate, focused on execution/sandboxing rather than clear malware behavior in this fragment.
Confidence: 48%Severity: 56%
Audit Metadata