Security audit
UnifyPort Node.js SDK
Security checks for vulnerabilities and agentic risk
Overview
This skill is a normal development guide for using and maintaining the UnifyPort Node.js SDK, with credential handling cautions and no hidden executable behavior found.
Before installing, confirm you intend to work with the UnifyPort Device API or SDK repository. Provide API credentials only through environment variables in an approved test or deployment environment, and avoid live API calls unless you explicitly want them.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
