Security audit
Pipeworx superhero
Security checks for vulnerabilities and agentic risk
Overview
No supplied scanner or workspace evidence showed malicious behavior, but the target artifact itself was not available for deeper review.
Based on the available clean scanner result and lack of negative telemetry, this can be treated as benign, but install only if the artifact page shows a clear purpose, expected permissions, and no surprising credential, persistence, or mutation behavior.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
