destructive-command-guard
Warn
Audited by Socket on Sep 15, 2026
1 alert found:
AnomalyAnomalyreferences/installation.md
LOWAnomalyLOW
references/installation.md
No direct malware or data-theft behavior is present in the supplied documentation. The described hook behavior is consistent with a destructive-command guard. However, the installation instructions introduce a meaningful supply-chain risk because remote, mutable content is piped directly to bash, including with sudo, and neither installer nor source integrity is independently verified. Review the installer and pin or verify trusted releases before use.
Confidence: 98%Severity: 58%
Audit Metadata