registry  /  @hotmeshio/hotmesh  /  0.25.0

@hotmeshio/hotmesh@0.25.0

Durable Workflow

Static Scan Results

scanned 3d ago · by rust-scanner

Static analysis flagged 7 finding(s) at 72.0% confidence. This version is warn-only unless an AI or security-team review confirms malicious behavior.

Static reason
One or more suspicious static signals were detected.

Decision evidence

public snapshot
Behavioral surface
Source
ChildProcessCryptoEnvironmentVarsFilesystemNetwork
Supply chain
HighEntropyStrings
Manifest
NoLicense
scanned 199 file(s), 1.47 MB of source

Source & flagged code

1 flagged · loading source
build/services/connector/providers/postgres.jsView file
13patternName = generic_password severity = medium line = 13 matchedText = password...rd',
Medium
Secret Pattern

Package contains a possible secret pattern.

build/services/connector/providers/postgres.jsView on unpkg · L13

Findings

3 Medium4 Low
MediumSecret Patternbuild/services/connector/providers/postgres.js
MediumNetwork
MediumEnvironment Vars
LowScripts Present
LowFilesystem
LowHigh Entropy Strings
LowNo License