integrate-agentkit-host
Warn
Audited by Socket on Sep 19, 2026
1 alert found:
AnomalyAnomalyscripts/tool_exec.py
LOWAnomalyLOW
scripts/tool_exec.py
The code is an authentication and API proxy CLI, not apparent malware. It performs expected network operations against a user-configured Scalekit environment, but it has a serious credential-handling weakness because it prints OAuth access and refresh tokens in plaintext. The proxy also permits broad user-selected remote requests and local file upload/download operations, so it should be treated as a privileged administrative tool and restricted from untrusted users or CI logs. No obfuscated or hidden malicious payload is evident in the supplied fragment. The apparent syntax errors should be corrected or verified as possible transcription truncation.
Confidence: 97%Severity: 68%
Audit Metadata