Is AIfra — temporary static previews safe?
Probably. Read the findings first.
Use with care. Some checks failed or could not be verified.
Public scan report
scanner v0.1.2 · 2026-09-18 · same rubric, same numbers if you re-run it
2 medium1 low
- Code scan4 source files scanned15/25
- –Live reliabilityno gateway calls yet and no remote to proben/a
- Tool poisoningonly the listing description was available15/15
- Auth qualitylocal package, no credentials required12/15
- Maintenanceno repository listed3/15
- Maintainer identityno repository or website to verify2/10
Findings (3)
- mediumeval / new Function used
exec.evalaifra.cjs: …ode, sch); const makeValidate = new Function(`${names_1.default.self}`, `${names_1.de… - mediumHeavily hex-escaped string (obfuscation)
obf.hex-densityaifra.cjs: …]^_`abcdefghijklmnopqrstuvwxyz{|}~\u2302\xC7\xFC\xE9\xE2\xE4\xE0\xE5\xE7\xEA\xEB\xE8\xEF\xEE\xEC\xC4\xC5\xC9\xE6\xC6\xF4\xF6\xF2\xFB\xF9\xFF\xD6\xDC\xA2\xA3\xA5\u20A7\u0192\xE1\xED\xF3\xFA\xF1\xD1\xAA… - lowNo source repository listed
maint.no-repo
Overall 59/100. Components that don't apply are left out of the denominator. Any critical finding is an F.RubricAppeal a findingJSON