sf-permissions

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Anomaly
AnomalyLOW
scripts/permission_exporter.py

The code appears intended to export Salesforce permission-set information. No evidence of malware or intentional data theft is present. It contains a likely SOQL injection risk from unescaped query parameters, an unrestricted file-write/overwrite risk through output_path, and substantial implementation errors caused by malformed function structure and missing helpers. The fragment is likely nonfunctional as provided, but should be repaired and inputs escaped or safely parameterized before use.

Confidence: 98%Severity: 57%
Audit Metadata
Analyzed At
Sep 14, 2026, 05:48 PM
Package URL
pkg:socket/skills-sh/jaganpro%2Fsf-skills%2Fsf-permissions%2F@808f76ca51e450d9334ab772ffa182d4fd71a5b73b172b5768a31aded16f90b4
Security Audit — socket — sf-permissions