using-graph-databases

Fail

Audited by Socket on Feb 15, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
examples/social-graph/typescript-neo4j/index.ts

No evidence of intentional malware or supply-chain sabotage in the provided file. The code uses parameterized Cypher queries, avoids dynamic code execution, and performs only expected DB operations. Primary risks are operational: a hardcoded demo username/password in main(), verbose logging of potentially sensitive data, and a likely accidental typo in the default export plus a couple of small logic bugs. These should be corrected before production use, but they do not indicate malicious behavior.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 15, 2026, 09:41 PM
Package URL
pkg:socket/skills-sh/ancoleman%2Fai-design-components%2Fusing-graph-databases%2F@6951f189170168cb8f324ee526b324e7a4ac6fbb