dojo-deploy
Warn
Audited by Socket on Mar 5, 2026
1 alert found:
AnomalyAnomalydeploy_local.sh
LOWAnomalyLOW
deploy_local.sh
The code implements a local, environment-driven orchestration for building, deploying, and running Dojo-based contracts using Katana and Torii. It does not exhibit malicious activity or exfiltration patterns in this fragment. Primary security concerns include ensuring manifest integrity, securing localhost endpoints from unintended exposure, and validating environment configurations to prevent misconfiguration. Overall risk is moderate due to local service exposure and dependency on external binaries and manifest trust.
Confidence: 70%Severity: 62%
Audit Metadata