wbso
Warn
Audited by Socket on Sep 18, 2026
1 alert found:
AnomalyAnomalyscripts/wbso
LOWAnomalyLOW
scripts/wbso
The code appears to be a legitimate compliance-service CLI rather than intentionally malicious malware. Its primary security concern is privacy exposure: the context command reads and emits Git history and local Claude/Codex user prompts, potentially disclosing sensitive information to downstream consumers. Sourcing configuration files creates arbitrary-code-execution risk if those files are tampered with. The eval-based argument parser is also unsafe design, although no definite exploit flow is established from the supplied code. No clear credential theft, persistence, destructive behavior, reverse shell, or cryptomining is present.
Confidence: 96%Severity: 62%
Audit Metadata