Dynamic code execution detected.
Critical
- Code
- suspicious.dynamic_code_execution
- Location
- scripts/pua.py:103
Security audit
Security checks across malware telemetry and agentic risk
This skill is a local npm malware scanner whose file-reading behavior matches its stated purpose.
Install it in an isolated environment if possible, verify the unpinned rlo-detect dependency before using that optional command, and scan only npm projects or package directories you intend to inspect because local file names and decoded snippets may be printed.
65/65 vendors flagged this skill as clean.
Detected: suspicious.dynamic_code_execution