registry  /  @erdify/cli  /  0.1.8

@erdify/cli@0.1.8

Command-line interface for [ERDify](https://erdify-app.kro.kr) — manage your database schemas and ERD diagrams directly from the terminal.

Static Scan Results

scanned 4h ago · by rust-scanner

Static analysis flagged 6 finding(s) at 72.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.

Static reason
One or more suspicious static signals were detected.

Decision evidence

public snapshot
Behavioral surface
Source
ChildProcessEnvironmentVarsNetwork
Supply chain
MinifiedUrlStrings
Manifest
NoLicense
scanned 2 file(s), 56.8 KB of source, external domains: erdify-app.kro.kr

Source & flagged code

1 flagged · loading source
dist/index.jsView file
1var We=Object.create;var Ee=Object.defineProperty;var Be=Object.getOwnPropertyDescriptor;var Ge=Object.getOwnPropertyNames;var ze=Object.getPrototypeOf,Qe=Object.prototype.hasOwnPr... L2: `).replace(/^/gm," ".repeat(o))}let u=[`Usage: ${t.commandUsage(e)}`,""],c=t.commandDescription(e);c.length>0&&(u=u.concat([t.wrap(c,i,0),""]));let m=t.visibleArguments(e).map(f=>l... ... L9: (Did you mean one of ${n.join(", ")}?)`:n.length===1?` L10: (Did you mean ${n[0]}?)`:""}Oe.suggestSimilar=ot});var De=x(Se=>{"use strict";var rt=v("events").EventEmitter,te=v("child_process"),E=v("path"),ne=v("fs"),_=v("process"),{Argument:... L11: - specify the name in Command constructor or using .name()`);return t=t||{},t.isDefault&&(this._defaultCommandName=e._name),(t.noHelp||t.hidden)&&(e._hidden=!0),this._registerComma... ... L25: `)}return""}function Ct(s,e,t){if(s.columnIds.length===0)return"";let n=s.columnIds.map(o=>{let r=e.columns.find(l=>l.id===o);return r?b(r.name,t):null}).filter(Boolean).join(", ")... L26: `)}function At(s,e,t,n){if(t!=="mysql"&&t!=="mariadb")return;let i=s.columns.filter(r=>r.autoIncrement);if(i.length===0)return;let o=new Set(e.filter(r=>r.entityId===s.id).flatMap(... L
High
Sandbox Evasion Gated Capability

Source gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.

dist/index.jsView on unpkg · L1

Findings

1 High2 Medium3 Low
HighSandbox Evasion Gated Capabilitydist/index.js
MediumNetwork
MediumEnvironment Vars
LowScripts Present
LowUrl Strings
LowNo License