Skip to content

smoketest#2

Open
etsubu wants to merge 2 commits into
mainfrom
smoketest
Open

smoketest#2
etsubu wants to merge 2 commits into
mainfrom
smoketest

Conversation

@etsubu
Copy link
Copy Markdown
Contributor

@etsubu etsubu commented Apr 27, 2026

No description provided.

@github-actions
Copy link
Copy Markdown

github-actions Bot commented Apr 27, 2026

Manticore Security Scan Results

4 packages scanned · 2 suspicious · Highest severity: 🔴 Critical


🔴 ts-gaussian 3.0.5

Score: 100 / 100 · Severity: Critical

🔴 1 Critical · 🟠 7 High · 🟡 5 Medium findings

🔴 Critical

Type Detail
Credential Exfiltration sensitive credential or file access combined with unknown network activity

🟠 High

Type Detail
Sensitive Env Access GITHUB_TOKEN, GOOGLE_APPLICATION_CREDENTIALS, NPM_TOKEN, google_application_credentials
Sensitive File Access /home/node/.aws/config (read), /home/node/.aws/credentials (read)
Unknown Network 169.254.169.254:80/tcp

🟡 Medium

Type Detail
Unknown DNS api.github.com, sts.us-east-1.amazonaws.com
Unknown Process /bin/sh ×2, sh

Behavior: 🌐 Network · 📁 File Access · ⚙️ Processes

🟡 lodash 4.17.21

Score: 18 / 100 · Severity: Medium

🟡 3 Medium findings

🟡 Medium

Type Detail
New Process /usr/bin/env not in ^4.17.21, node not in ^4.17.21 ×2

Scanned by Manticore Engine

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant