rlm
Fail
Audited by Socket on Feb 27, 2026
1 alert found:
Obfuscated FileObfuscated FileREADME.md
HIGHObfuscated FileHIGH
README.md
The README itself contains no direct malicious code but prescribes a high-risk installation pattern (curl | bash) and capabilities (broad filesystem scanning and parallel background agents) that, if implemented by the remote installer, could enable data harvesting, persistence, or network exfiltration. Before use, fetch and review the install.sh and all installed components, prefer cloning over piping to shell, run installs in an isolated sandbox with restricted permissions and network egress controls, and audit any background processes the installer creates.
Confidence: 98%
Audit Metadata