tao-port-huggingface-model
Warn
Audited by Socket on Sep 17, 2026
1 alert found:
AnomalyAnomalyreferences/docker-patterns.md
LOWAnomalyLOW
references/docker-patterns.md
The fragment does not provide clear evidence of malware or data theft. It does contain a potentially dangerous broad filesystem deletion command targeting `.git` directories and `.gitlab-ci.yml` files. This may be intentional Docker image cleanup, but it should be restricted to the build workspace and verified to run only inside an isolated build stage. The telemetry variable alone does not demonstrate tracking or exfiltration.
Confidence: 91%Severity: 62%
Audit Metadata