nextdns-cli

Warn

Audited by Socket on Mar 30, 2026

1 alert found:

Anomaly
AnomalyLOW
rules/macos-installation.md

No direct malware is evidenced in this documentation fragment itself. However, it recommends a high-privilege universal one-liner that downloads and immediately executes a remote installer script (curl -> command substitution -> sh -c), which is a significant supply-chain trust risk if the endpoint/content were ever compromised. Additional security considerations include optional telemetry (-report-client-info) and the increased information exposure likelihood when enabling DEBUG=1. A definitive malware assessment would require reviewing the actual installer script and the CLI binary/source code.

Confidence: 62%Severity: 55%
Audit Metadata
Analyzed At
Mar 30, 2026, 01:14 AM
Package URL
pkg:socket/skills-sh/tuanductran%2Fnextdns-skills%2Fnextdns-cli%2F@596f1eb21efc3aee47747e68835cc23b56056ee3