dynamsoft-sdk

Warn

Audited by Socket on Aug 12, 2026

1 alert found:

Anomaly
AnomalyLOW
template-optimizer/tools/dbr_license.py

No clear malicious behavior is visible in the provided lines (no exec/network/persistence/exfiltration). The primary security concern is the presence of a hardcoded, credential-like license/session payload embedded in code and potential leakage of licensing diagnostics via stdout logging on error. Additionally, the snippet appears truncated, limiting confidence in complete runtime behavior, and the import-time fallback may alter which vendor bundle code executes.

Confidence: 62%Severity: 52%
Audit Metadata
Analyzed At
Aug 12, 2026, 03:24 AM
Package URL
pkg:socket/skills-sh/yushulx%2Fdynamsoft-sdk-skill%2Fdynamsoft-sdk%2F@43aa32f5d5414b9c3769ec6e6736179361174bf8
Security Audit — socket — dynamsoft-sdk