Missing User Warnings
Medium
- Confidence
- 94% confidence
- Finding
- The setup section instructs users to install software by piping a remotely fetched script directly into a shell, without any integrity verification or explicit warning about the risks of executing network-delivered code. If the install endpoint, transport, hosting account, or supply chain is compromised, users could execute arbitrary attacker-controlled commands on their machine.
