quark-hub

Warn

Audited by Socket on Aug 8, 2026

1 alert found:

Anomaly
AnomalyLOW
scripts/refresh_cookie.sh

No explicit indicators of covert malware (e.g., outbound exfiltration, backdoor/persistence logic, cryptomining, or suspicious network destinations) are present in this snippet. However, the script performs high-impact dynamic code loading by dot-sourcing a path derived from tool/browser output without integrity/ownership validation, creating an avenue for arbitrary command execution if an attacker can influence the generated env-cookies script path or its contents. Additionally, it persists a sensitive cookie header locally, which increases impact if the host or filesystem is compromised. Overall: likely intended functionality, but with a meaningful security risk due to dynamic sourcing of externally produced script content.

Confidence: 62%Severity: 55%
Audit Metadata
Analyzed At
Aug 8, 2026, 12:36 PM
Package URL
pkg:socket/skills-sh/openminis%2Fminisskills%2Fquark-hub%2F@f04ec3911ef49f1d22014c4697d7ae2135b157e08c81366ac8b7ce9a5f2310bd
Security Audit — socket — quark-hub