tensorlake

Warn

Audited by Socket on Aug 12, 2026

1 alert found:

Anomaly
AnomalyLOW
evals/run.py

This module is best characterized as an evaluation harness with a significant sandbox/trust-boundary weakness rather than intrinsic malware. It runs an external `claude` tool with `--dangerously-skip-permissions` and then reads local files based on paths extracted from untrusted tool-use outputs, serializing their contents into `files.json`. If the subprocess/tool output is influenced maliciously, the harness can enable unintended local file disclosure and sensitive-data retention. No direct malicious payload is evident within this Python file itself, but the integration materially increases security risk.

Confidence: 62%Severity: 64%
Audit Metadata
Analyzed At
Aug 12, 2026, 07:20 PM
Package URL
pkg:socket/skills-sh/tensorlakeai%2Ftensorlake-skills%2Ftensorlake%2F@eca6b8336cb8842188a551cc16eeef45f2547068
Security Audit — socket — tensorlake