typo3-ddev

Warn

Audited by Socket on May 7, 2026

1 alert found:

Anomaly
AnomalyLOW
assets/templates/commands/install-v14

This fragment is primarily a TYPO3 development installer, not an obvious standalone malware payload. There is no visible exfiltration/backdoor behavior, but the installer carries substantial security and supply-chain risk from trust-weakening configuration defaults (debug/displayErrors, permissive trustedHostsPattern, disabling referrer enforcement), a hardcoded MySQL root password, and—most importantly—direct execution of an external mounted auto-configure script plus installation of an extension from a local path repository without integrity/provenance controls. Use only in tightly controlled dev environments and ensure the mounted scripts and local extension paths are trusted and not attacker-modifiable.

Confidence: 62%Severity: 67%
Audit Metadata
Analyzed At
May 7, 2026, 08:36 PM
Package URL
pkg:socket/skills-sh/netresearch%2Ftypo3-ddev-skill%2Ftypo3-ddev%2F@a21a1d322386c1a1243c401a6ccaedc3433ca9ea
Security Audit — socket — typo3-ddev