split-stack
Warn
Audited by Socket on Aug 13, 2026
1 alert found:
AnomalyAnomalyscripts/strip_hunks.py
LOWAnomalyLOW
scripts/strip_hunks.py
No clear malware behavior (no network/exfiltration, no eval/exec, no obfuscation, no credential theft) is present in this code fragment. However, it is a powerful in-repo modification/deletion tool whose write/delete operations are governed entirely by an external JSON spec. If an attacker can influence the spec path/content, they can cause targeted overwrites and removals within the repository (albeit constrained by repository path/symlink/escape checks). The main residual concern is misuse/supply-chain sabotage rather than stealth malware.
Confidence: 66%Severity: 55%
Audit Metadata