wispr-flow
Warn
Audited by Socket on Mar 3, 2026
1 alert found:
AnomalyAnomalydocs/local-data-sources.md
LOWAnomalyLOW
docs/local-data-sources.md
The document is a benign reference that explicitly enumerates local, highly sensitive macOS data sources and shows how to read them (including a command to copy locked DBs to /tmp). There is no executable malware or obfuscated malicious code in this text, but it is privacy-invasive and could be abused by malicious tools to harvest transcripts, messages, browser history, notes, and contacts. Treat content as sensitive operational guidance; audit any implementation that executes these steps.
Confidence: 90%Severity: 60%
Audit Metadata