Shell command execution detected (child_process).
- Code
- suspicious.dangerous_exec
- Location
- src/code/code-executor.js:758
Security audit
Security checks for vulnerabilities and agentic risk
This looks like a broad local AI helper, but it under-discloses external API use, local server behavior, and privileged runtime features.
Install only if you are comfortable with a large local agent engine that can persist memory, expose a localhost MCP HTTP service, and optionally execute code or call external APIs. Do not provide HEARTFLOW_API_KEY, HEARTFLOW_MCP_TOKEN, HEARTFLOW_CODE_EXECUTOR_ENABLED, HEARTFLOW_ENABLE_SELF_MODIFICATION, or local API-key files unless you intend those capabilities, and run it in an isolated environment for testing.
SkillSpector could not complete.
Detected: suspicious.dangerous_exec, suspicious.dynamic_code_execution, suspicious.env_credential_access