app-store-review
Warn
Audited by Socket on Aug 30, 2026
1 alert found:
AnomalyAnomalyrules/2-performance.md
LOWAnomalyLOW
rules/2-performance.md
The provided fragment contains explicit, high-severity remote code execution indicators (fetching JavaScript and executing it via eval, plus dynamic require). However, much of the surrounding material appears to be policy/compliance guidance rather than confirmed library implementation. With limited context, this warrants a security review: if these patterns exist in the actual dependency at runtime, the security risk is extremely high; if they are only illustrative or dead code, risk is substantially lower.
Confidence: 45%Severity: 60%
Audit Metadata