express-bus-booking

Warn

Audited by Socket on Sep 17, 2026

1 alert found:

Anomaly
AnomalyLOW
scripts/kobus_express_booking.py

The code is a legitimate-looking KOBUS schedule and reservation-hold client, not apparent malware. It communicates only with the hardcoded official KOBUS domain and does not steal credentials or execute system commands. However, disabling TLS certificate verification is a significant security weakness because reservation cookies and form data can be intercepted or altered. Generated checkout and cancellation files also contain sensitive reservation information and should be protected. The shown fragment additionally has an apparent syntax error at the final sys.exit(main() call.

Confidence: 98%Severity: 62%
Audit Metadata
Analyzed At
Sep 17, 2026, 07:38 AM
Package URL
pkg:socket/skills-sh/nomadamas%2Fk-skill%2Fexpress-bus-booking%2F@dcd773e135e71167d1bd9d08719377fe95e24f0ea63d6bdae4f3df9b13d6de7f
Security Audit — socket — express-bus-booking