Back to plugin
Pluginv0.1.0
Static analysis security
DefenseClaw Security · Deterministic local checks for risky code patterns and metadata mismatches.
Scanner verdict
SuspiciousApr 28, 2026, 9:46 PM
- Summary
- Detected: suspicious.dangerous_exec, suspicious.env_credential_access
- Reason codes
- suspicious.dangerous_execsuspicious.env_credential_access
- Engine
- v2.4.2
Evidence
criticalsrc/policy/enforcer.ts:39
Shell command execution detected (child_process).
execFile(
criticalsrc/aws-sdk-http1-for-guardrail.ts:119
Environment variable access combined with network send.
const home = process.env.HOME || process.env.USERPROFILE;
