📦
Audit History
ledger-sync-19989 - 1 audit
Audit version 1 Latest
Oct 1, 2026, 07:55 AM
All ten static alerts are false positives involving Markdown, a local Unix socket, or a permission declaration. Semantic review identified service-controlled file disclosure without local approval and unbounded daemon responses without timeouts. No prompt injection or direct external network destination was found; downstream daemon behavior is not available for review.
5
Files scanned
189
Lines analyzed
4
Review items
0
False positives ignored
Confirmed security concerns (2)
High
Service-Controlled File Disclosure Without Local Approval
The service supplies file paths, and the workflow uploads the first readable home-directory entry without local approval or a sensitive-file allowlist. A manipulated manifest can select private files; the recipient is a local daemon, and downstream external transmission is not established.
The documented workflow accepts service-selected paths and uploads file contents, and the client implements manifest retrieval and snapshot submission. Exploitation requires a manipulated manifest.
Medium
Unbounded Daemon Responses Can Exhaust Resources
The client waits for socket responses without deadlines and reads until EOF without a byte limit. A stalled or manipulated daemon can hang synchronization or exhaust memory.
The request function directly awaits connection, drain, and reader.read() without timeout wrappers or response limits. The file upload size cap does not bound responses.
Risk Factors
📁 Filesystem access (4)
⚙️ External commands (5)
Audited by: codex