Close Open Privacy Scan

bolt Snapshot: commit 355b192
science engine v1.22
schedule 2026-07-22T16:16:47.254374+00:00

verified_user No application data leak found

No high-confidence exfiltration was found in application code.

smart_toy MCP server detected: @ai-sdk/anthropic, @ai-sdk/openai, @anthropic-ai/sdk, @modelcontextprotocol/ext-apps +5 more — detected in dependencies, not a safety judgment.

App Privacy Score

67 /100
Medium privacy risk

Medium risk · 117 finding(s)

Dependency score: 97 (Low risk)

bar_chart Score Breakdown

telemetry −25
egress −5
env_fs −3

list Scan Summary

0 high 0 medium 117 low
First-party packages: 6
Dependency packages: 1
Ecosystem: rust

swap_horiz External domains

::ffff:192.168.0.1a.coaccess.line.meaccounts.google.comaccounts.spotify.comadaptivecards.ioaggregate.ee.engr.uky.eduai-sdk.devai.azure.comai.google.devaiplatform.googleapis.comaistudio.google.comanimations.devaomediacodec.github.ioapi-m.paypal.comapi-m.sandbox.paypal.comapi.anthropic.comapi.atlassian.comapi.botframework.azure.usapi.botframework.comapi.botframework.usapi.cerebras.aiapi.cloudflare.comapi.cohere.aiapi.cohere.comapi.deepseek.comapi.dropboxapi.comapi.figma.comapi.github.comapi.githubcopilot.comapi.groq.comapi.kick.comapi.line.meapi.linear.appapi.linkedin.comapi.minimax.ioapi.mistral.aiapi.notion.comapi.nuget.orgapi.openai.comapi.paypal.comapi.perplexity.aiapi.polar.shapi.sandbox.paypal.comapi.slack.comapi.spotify.comapi.telegram.orgapi.vercel.comapi.weixin.qq.comapi.x.aiapi.x.comapi.z.aiapi.zoom.usapis.roblox.comapp.asana.comapp.getoutline.comapp.posthog.comapp.slack.comappleid.apple.comapps.extensions.modelcontextprotocol.ioarchestra.aiassets.anthropic.comauth.atlassian.comauth.company.comauth.openai.comaws.amazon.combackboard.railway.combedrock-agent-runtime.us-west-2.amazonaws.combedrock-mantle.us-east-1.api.awsbedrock-runtime.us-east-1.amazonaws.combetter-auth.combotframework.azure.usbrotlipy.readthedocs.iobugreports.qt.iobugs.python.orgbugs.winehq.orgbugzilla.gnome.orgcdn.discordapp.comcdn.jsdelivr.netcdn.mathjax.orgcdn.playwright.devcdnjs.cloudflare.comcens.ioc.eechatgpt.comchromium.googlesource.comclick.palletsprojects.comcloud.cerebras.aicognitiveservices.azure.comcommonmark.orgconsole.anthropic.comconsole.aws.amazon.comconsole.groq.comconsole.mistral.aicrates.iocryptography.iodashboard.cohere.comdashboard.ngrok.comdata-apis.orgdatatracker.ietf.orgdate-fns.orgdev.mysql.comdeveloper.microsoft.comdeveloper.mozilla.orgdeveloper.salesforce.comdevelopers.cloudflare.comdevelopers.openai.comdigitalassets.lib.berkeley.edudiscord.comdiscord.ggdmlc.github.iodoc.rust-lang.orgdocbook.sourceforge.netdocs.anthropic.comdocs.aws.amazon.comdocs.claude.comdocs.cloud.google.comdocs.expo.devdocs.geldata.comdocs.npmjs.comdocs.pydantic.devdocs.pytest.orgdocs.python.orgdocs.rsdocs.scipy.orgdocs.vllm.aidocs.z.aidod-graph.microsoft.usdoi.orgdotenvx.come2e-tests-keycloak.default.svc.cluster.localedgeupdates.microsoft.comen.wikipedia.orgeu.i.posthog.comfastapi.tiangolo.comfastify.devfd00:ec2::254fonts.googleapis.comfoo.comform.typeform.comgcc.gnu.orggenerativelanguage.googleapis.comgist.github.comgithub.comgitlab.comgitlab.freedesktop.orggoo.glgoogle.aip.devgoogle.comgraph.facebook.comgraph.microsoft.comgraph.microsoft.degraph.microsoft.usgraphics.stanford.edugroups.google.comhandlebarsjs.comhelp.openai.comhelp.salesforce.comhost.docker.internalhtml.spec.whatwg.orghttpbin.orghttpwg.orghuggingface.coid.kick.comid.twitch.tvid.vk.comidp.company.comidp.paybin.ioimageio.readthedocs.ioipython.orgj3-fortran.orgjsforce.github.iojson-schema.orgjsonplaceholder.typicode.comkapi.kakao.comkauth.kakao.comkubernetes.iolegacy.reactjs.orglibsdl.orglimited.facebook.comlinear.applocal.drizzle.studiolocalhost.tiangolo.comlodash.comlogin.botframework.azure.uslogin.botframework.comlogin.microsoftonline.comlogin.microsoftonline.uslogin.salesforce.comm365.cloud.microsoftmanagement.azure.commathworld.wolfram.commatplotlib.orgmesonbuild.commetacpan.orgmicrosoft.commicrosoftgraph.chinacloudapi.cnmodelcontextprotocol.iomodels.devmüller.denicolas.limare.netnid.naver.comnpm.imnpms.ionumpy.orgnumpydoc.readthedocs.iooauth.reddit.comoauth2.googleapis.comollama.aiopen.bigmodel.cnopen.tiktokapis.comopen.weixin.qq.comopenapi.naver.comopenid.netopenidconnect.googleapis.comopenrouter.aiorigin.asdorm.drizzle.teamother.compackages.msys2.orgpandas.pydata.orgpeople.eecs.berkeley.edupeps.python.orgpersonal.math.ubc.caplatform.claude.complatform.deepseek.complatform.minimax.ioplatform.openai.complaywright.bloburlplaywright.download.prss.microsoft.compolar.shportal.azure.comportal.ssoportal.sso-fipsposthog.compurl.oclc.orgpyinstaller.readthedocs.iopyjwt.readthedocs.iopypi.orgraw.githubusercontent.comreact-native.canny.ioreact.devreactjs.orgrequests.readthedocs.ios3-fips.dualstacks3-fips.dualstack.us-east-1s3-fips.us-east-1s3.amazonaws.coms3.dualstacks3.dualstack.us-east-1schemas.microsoft.comschemas.openxmlformats.orgschemas.xmlsoap.orgschemas.zwobble.orgscikit-image.orgscipy-cookbook.readthedocs.ioscipy-lectures.orgsentry.iosethmlarson.devslack.comsoap.sforce.comsonner.emilkowal.skisourceware.orgspdx.devstackoverflow.comsts.amazonaws.comsts.windows.netstuk.github.iosupport.microsoft.comswagger.iot.metanstack.comteams.microsoft.comtest.salesforce.comtoken.botframework.comtools.ietf.orgtruststore.readthedocs.iotwitter.comtyper.tiangolo.comtyping.python.orgunpkg.comurllib3.readthedocs.ious.i.posthog.comus.posthog.comvercel.comviews.scientific-python.orgweb.archive.orgwebhook.sitewixtoolset.orgwrapdb.mesonbuild.comwww.ams.orgwww.apache.orgwww.botframework.comwww.dropbox.comwww.eclipse.orgwww.ecma-international.orgwww.facebook.comwww.figma.comwww.force.comwww.google.comwww.googleapis.comwww.iana.orgwww.intel.comwww.linkedin.comwww.math.hmc.eduwww.mathjax.orgwww.mathworks.comwww.minimax.iowww.npmjs.comwww.oasis-open.orgwww.openblas.netwww.paypal.comwww.perplexity.aiwww.pyopenssl.orgwww.python.orgwww.reddit.comwww.rfc-editor.orgwww.sandbox.paypal.comwww.scipy.orgwww.sqlite.orgwww.starlette.devwww.stixfonts.orgwww.tiktok.comwww.w3.orgwww.webmproject.orgwww.xyz.eduwww.youtube.comx.aix.comxn--fiqs8s.icom.museumyahoo.comyarnpkg.comyour-app.comyour-domain.atlassian.netyour-instance.service-now.comyour-tenant.sharepoint.comz.aizoom.us

</> First-Party Code

first-party (rust): ai-labs/analyzer

rust first-party
expand_more 11 low-confidence finding(s)
low env_fs production #00e8bea32fb12815 Filesystem access.
repo/ai-labs/analyzer/src/analyze.rs:342
    std::fs::write(work.path().join("analyses.md"), analyses_doc)?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #2479cfbe7939eedc Filesystem access.
repo/ai-labs/analyzer/src/lib.rs:208
        std::fs::write(&md_path, &rollout.markdown)

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #21fb18ce19cde820 Filesystem access.
repo/ai-labs/analyzer/src/lib.rs:368
    std::fs::write(
        &rubrics_tmp,
        rubrics_jsonl(analyzed.iter().map(|(_, _, record)| record)),
    )

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #6f5b9c041a559b61 Filesystem access.
repo/ai-labs/analyzer/src/lib.rs:403
    std::fs::write(&analyses_path, &analyses_doc)

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #a89ed962e8fcde6d Filesystem access.
repo/ai-labs/analyzer/src/lib.rs:449
    std::fs::write(&out_path, &report.text).wrap_err_with(|| format!("writing report to {}", out_path.display()))?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #de88a8ea18ec5ef8 Filesystem access.
repo/ai-labs/analyzer/src/lib.rs:473
        std::fs::write(dir.join("run.json"), run_json).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #e961a52c9df6babc Filesystem access.
repo/ai-labs/analyzer/src/lib.rs:474
        std::fs::write(
            dir.join("trajectory.jsonl"),
            "{\"kind\":\"assistant_text\",\"text\":\"hi\"}\n",
        )

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #34bc6d4b7875dbcc Filesystem access.
repo/ai-labs/analyzer/src/runmeta.rs:14
        std::fs::read_to_string(&path).wrap_err_with(|| format!("reading required run.json at {}", path.display()))?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #b7bc3eb2bfe8c229 Filesystem access.
repo/ai-labs/analyzer/src/runmeta.rs:129
        let mut f = std::fs::File::create(dir.path().join("run.json")).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #7bd9fe89b63382e0 Filesystem access.
repo/ai-labs/analyzer/src/trajectory.rs:41
    let content = std::fs::read_to_string(path).map_err(|e| LoadError {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #95301630e8c8a6c4 Filesystem access.
repo/ai-labs/analyzer/src/trajectory.rs:169
        let mut f = std::fs::File::create(&path).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

first-party (rust): ai-labs/cli

rust first-party
expand_more 2 low-confidence finding(s)
low telemetry production #c1118e5ebb6217a8 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/ai-labs/cli/src/main.rs:189
            tracing::error!("benchmark failed: {e}");

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #f6e4ecb4ef3693fe Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/ai-labs/cli/src/main.rs:267
            tracing::error!("benchmark failed: {e}");

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

first-party (rust): ai-labs/core

rust first-party
expand_more 2 low-confidence finding(s)
low env_fs production #931bccb93639e900 Filesystem access.
repo/ai-labs/core/src/lanes.rs:133
    let content = std::fs::read_to_string(path).map_err(|e| LaneError(format!("{ctx}: {e}")))?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #f7ee221d94155fa4 Filesystem access.
repo/ai-labs/core/src/lanes.rs:229
        std::fs::write(dir.path().join("lanes.toml"), body).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

first-party (rust): ai-labs/dashboard

rust first-party
expand_more 7 low-confidence finding(s)
low telemetry production #ede98042f8120229 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/ai-labs/dashboard/src/lib.rs:52
                tracing::error!("handler error: {err:#}");

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #31ce5ae3b55a9b2a Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/ai-labs/dashboard/src/lib.rs:94
    tracing::info!(
        "dashboard listening on http://{addr} (experiments dir: {})",
        cfg.experiments_dir.display()
    );

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low env_fs production #7e395f39e7de53ac Filesystem access.
repo/ai-labs/dashboard/src/load.rs:443
        match std::fs::read_to_string(&path) {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #0ebc2f4270369ea7 Filesystem access.
repo/ai-labs/dashboard/src/load.rs:461
    let bytes = std::fs::read(path).ok()?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #2da08e4d19ad0a90 Filesystem access.
repo/ai-labs/dashboard/src/load.rs:479
        let meta: RunMeta = match std::fs::read(&path)

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #1b2b4067f19e5269 Filesystem access.
repo/ai-labs/dashboard/src/load.rs:533
    let text = match std::fs::read_to_string(&path) {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #96acacc0f822433f Filesystem access.
repo/ai-labs/dashboard/src/views.rs:657
        Ok(_) => match std::fs::read_to_string(&path) {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

first-party (rust): ai-labs/runner

rust first-party
expand_more 49 low-confidence finding(s)
low env_fs production #af2bb1577e47f915 Environment-variable access.
repo/ai-labs/runner/src/client.rs:1056
    std::env::var("GITHUB_TOKEN")

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #adcb65646b90b093 Environment-variable access.
repo/ai-labs/runner/src/client.rs:1057
        .or_else(|_| std::env::var("GH_TOKEN"))

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #ee946f84b72b2c37 Filesystem access.
repo/ai-labs/runner/src/config/envs.rs:243
        std::fs::write(tmp.join(format!("{id}.toml")), content).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #4287a656e62201be Filesystem access.
repo/ai-labs/runner/src/config/envs.rs:249
        std::fs::write(
            d.join("task.toml"),
            "[[stages]]\ntext = \"go\"\n[result_schema]\ntype = \"object\"\n",
        )

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #59f2ae21fe2107e8 Filesystem access.
repo/ai-labs/runner/src/config/envs.rs:254
        std::fs::write(d.join("verifier.py"), "def test_ok(): assert True\n").unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #5fb1c5d23128ddd8 Filesystem access.
repo/ai-labs/runner/src/config/envs.rs:282
        std::fs::write(&path, content).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #6f35eef828614051 Filesystem access.
repo/ai-labs/runner/src/config/envs.rs:326
        std::fs::write(
            envs_dir.join("isolated.toml"),
            "id = \"isolated\"\nname = \"isolated\"\ntasks = [\"t1\"]\nfixture_mcp = true\n",
        )

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #6ace412467e9a2b5 Filesystem access.
repo/ai-labs/runner/src/config/envs.rs:333
        std::fs::write(
            envs_dir.join("shared.toml"),
            "id = \"shared\"\nname = \"shared\"\ntasks = [\"t2\"]\nfixture_mcp = true\nshare_backend = true\n",
        )

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #9125de61225a4ba7 Filesystem access.
repo/ai-labs/runner/src/config/tasks.rs:137
        match std::fs::read_to_string(&target) {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #a5f44bfe1d184d30 Filesystem access.
repo/ai-labs/runner/src/config/tasks.rs:299
        std::fs::write(dir.join("verifier.py"), "def test_ok(): assert True\n").unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #e9a9c6a2dda8fdd1 Filesystem access.
repo/ai-labs/runner/src/config/tasks.rs:300
        std::fs::write(
            dir.join("task.toml"),
            format!("{stages_toml}\n[result_schema]\ntype = \"object\"\n"),
        )

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #59d9e7105b85bfb2 Filesystem access.
repo/ai-labs/runner/src/config/toml_util.rs:22
    let text = std::fs::read_to_string(path)

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #15e147d5325f9ce1 Filesystem access.
repo/ai-labs/runner/src/fixture_mcp.rs:549
            let txt = std::fs::read_to_string(&path).unwrap_or_else(|e| panic!("read {path}: {e}"));

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #2019456a52a409bd Filesystem access.
repo/ai-labs/runner/src/lifecycle.rs:428
        let log_file = std::fs::File::create(&self.log_path)?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #e35ae92d23204e3b Filesystem access.
repo/ai-labs/runner/src/lifecycle.rs:796
    let text = std::fs::read_to_string(path)?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #378a7bc991a0d01c Environment-variable access.
repo/ai-labs/runner/src/lifecycle.rs:804
        let mut combined = std::env::vars().collect::<HashMap<_, _>>();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #2a052bf2f69de7e8 Environment-variable access.
repo/ai-labs/runner/src/lifecycle.rs:844
    let explicit = std::env::var("ARCHESTRA_BENCH_DATABASE_URL")

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #4c8cef1c03805e92 Filesystem access.
repo/ai-labs/runner/src/lifecycle.rs:1069
    let log_file = std::fs::File::create(&log_path)?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #9de0771fe80d894e Filesystem access.
repo/ai-labs/runner/src/lifecycle.rs:1098
    let contents = std::fs::read_to_string(compose_file).map_err(|e| {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #78d4b9965ef29a44 Environment-variable access.
repo/ai-labs/runner/src/lifecycle.rs:1196
    let mut env: HashMap<String, String> = std::env::vars().collect();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #48ab7752f6b5c5e4 Environment-variable access.
repo/ai-labs/runner/src/lifecycle.rs:1233
    non_empty(std::env::var(key).ok())

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #b30b8c7d3ff80f3f Filesystem access.
repo/ai-labs/runner/src/lifecycle.rs:1308
        std::fs::write(repo_path.join("f.txt"), "x").unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #78cf7e1f5c3403ee Filesystem access.
repo/ai-labs/runner/src/lifecycle.rs:1535
        std::fs::write(
            &path,
            "# see registry.dagger.io/engine:<tag>\nservices:\n  bench-dagger:\n    image: registry.dagger.io/engine:v9.9.9 # pinned\n",
        )

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #8bda7d811db4f2fc Filesystem access.
repo/ai-labs/runner/src/lifecycle.rs:1547
        std::fs::write(&path, "services:\n  bench-dagger:\n    image: postgres:18\n").unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #748aad7632f14830 Filesystem access.
repo/ai-labs/runner/src/lifecycle.rs:1567
        std::fs::write(&path, "# comment\nFOO=bar\nBAZ=qux\n\nREF=$FOO/${BAZ}\n").unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #047835aae81613b0 Filesystem access.
repo/ai-labs/runner/src/mcp_lock.rs:99
        std::fs::write(&tmp, json).map_err(|e| format!("writing {}: {e}", tmp.display()))?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #57343f93118dafa1 Filesystem access.
repo/ai-labs/runner/src/mcp_lock.rs:105
    let bytes = match std::fs::read_to_string(&path) {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #c50f65f6c61816cc Filesystem access.
repo/ai-labs/runner/src/mcp_lock.rs:216
        std::fs::write(dir.path().join("basic.mcp.lock"), "{ not json").unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low telemetry production #add4b079dba82d9a Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/ai-labs/runner/src/mcp_server.rs:189
                tracing::warn!(
                    requested = task_key,
                    active = ctx.task_key,
                    "take_submission for a non-active task; ignoring"
                );

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low egress production #9f9c0f4bb4c07e71 Hardcoded external endpoint. Review what data is sent to this destination.
repo/ai-labs/runner/src/pricing.rs:78
    let resp = http
        .get(OPENROUTER_MODELS_URL)

Data is sent to a hardcoded external endpoint; review what leaves the process.

Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.

low env_fs production #3b505edec6391b63 Filesystem access.
repo/ai-labs/runner/src/run.rs:276
        fs::write(
            &aggregate_path,
            serde_json::to_string_pretty(&aggregate.to_json()).unwrap_or_default() + "\n",
        )

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #aa3338fc3da8e1e4 Environment-variable access.
repo/ai-labs/runner/src/run.rs:318
        let process = std::env::var(&key_env).ok();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #00d279ffba99b745 Filesystem access.
repo/ai-labs/runner/src/run.rs:872
        let _ = std::fs::write(
            ctx.root_run_dir.join(&subdir).join("run.json"),
            serde_json::to_string_pretty(&metadata).unwrap_or_default() + "\n",
        );

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #01e20d545dcc5c0c Filesystem access.
repo/ai-labs/runner/src/run.rs:876
        let _ = std::fs::write(
            ctx.root_run_dir.join(&subdir).join("trajectory.jsonl"),
            serde_json::to_string(&serde_json::json!({
                "sequence": 1,
                "timestamp": stamp,
                "kind": "infra_error",
                "error": format!("infra: {error}"),
            }))
            .unwrap_or_default()
                + "\n",
        );

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #a785582d9d912565 Filesystem access.
repo/ai-labs/runner/src/run.rs:1890
            data: std::fs::read(task.inputs_dir().join(&f.src)).unwrap_or_default(),

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #595c47c4469896b4 Filesystem access.
repo/ai-labs/runner/src/run.rs:2337
        if let Err(e) = fs::write(&tmp, data).await {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #20747098c395e8ea Filesystem access.
repo/ai-labs/runner/src/run.rs:2348
        if let Err(e) = fs::write(&path, data).await {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #242f7ce9f8f1bc7d Filesystem access.
repo/ai-labs/runner/src/run.rs:2727
    fs::write(
        run_dir.join("config.json"),
        serde_json::to_string_pretty(&config).unwrap_or_default() + "\n",
    )

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #d888ab5995ea3ff6 Filesystem access.
repo/ai-labs/runner/src/run.rs:2738
            fs::write(path, report).await?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #c52171ff095c355a Filesystem access.
repo/ai-labs/runner/src/run.rs:3203
            serde_json::from_slice(&std::fs::read(artifacts.path.join("run.json")).unwrap()).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #8a5a1e217b63c1c3 Filesystem access.
repo/ai-labs/runner/src/run.rs:3246
            serde_json::from_slice(&std::fs::read(artifacts.path.join("run.json")).unwrap()).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #a25dbeff4ad4bfaa Filesystem access.
repo/ai-labs/runner/src/run.rs:3321
            serde_json::from_slice(&std::fs::read(artifacts.path.join("run.json")).unwrap()).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #af3fb0bdfc2fe40c Filesystem access.
repo/ai-labs/runner/src/run.rs:3338
            serde_json::from_slice(&std::fs::read(tmp.path().join("config.json")).unwrap()).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #5d65e619824f2bf8 Filesystem access.
repo/ai-labs/runner/src/run.rs:3371
        let meta: serde_json::Value = serde_json::from_slice(&std::fs::read(run_json).unwrap()).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #79b8851ee17997d4 Filesystem access.
repo/ai-labs/runner/src/verify.rs:123
    fs::write(&result_path, report_bytes).await?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #55156827b8727a24 Filesystem access.
repo/ai-labs/runner/src/verify.rs:141
        fs::write(&output_path, bytes).await?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #0661edeeba39137c Filesystem access.
repo/ai-labs/runner/src/verify.rs:147
        fs::write(&state_path, bytes).await?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #86366703786f2175 Filesystem access.
repo/ai-labs/runner/src/verify.rs:158
    fs::write(workdir.join(SUPPORT_NAME), VERIFIER_SUPPORT).await?;

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #a7d6e9e50bcd7317 Environment-variable access.
repo/ai-labs/runner/src/verify.rs:184
    let mut full_env = std::env::vars()

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

first-party (rust): platform/archestra-rs/sandbox-core

rust first-party
expand_more 20 low-confidence finding(s)
low telemetry production #3e7133993d46431d Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:350
            tracing::debug!(error = %err, "dagger session child kill errored; reaping");

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low env_fs production #ce090ec726614b50 Environment-variable access.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:441
    let cli = match env::var(DAGGER_CLI_BIN_ENV) {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low telemetry production #f0eca6d6bef56af1 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:491
                tracing::warn!(error = %err, "dagger session keepalive ping failed");

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #ee16cd06d190052c Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:528
    tracing::info!(target = ?target, "spawning dagger session");

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low env_fs production #a98c7e939c754e27 Environment-variable access.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:652
    let image = env::var("ARCHESTRA_DAGGER_RUNTIME_IMAGE")

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #1b83f4b016b846e9 Environment-variable access.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:659
    let prebuilt = base_prebuilt_from_env(env::var("ARCHESTRA_CODE_RUNTIME_BASE_PREBUILT").ok());

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low telemetry production #014b070d4d4f7e99 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:661
    tracing::info!(%image, prebuilt, "building warm base image");

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #95af3cea05012c7b Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:699
        .inspect(|_| tracing::info!("warm base image ready"))

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #6e8a984baf688198 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:700
        .inspect_err(|err| tracing::warn!(error = %err, "warm base image build failed"))

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low env_fs production #3d235badc238ac0a Filesystem access.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:1221
        let mut file = std::fs::File::create(&path).unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #e8822e35c159621e Filesystem access.
repo/platform/archestra-rs/sandbox-core/src/backends/dagger.rs:1270
        let Ok(stat) = std::fs::read_to_string(format!("/proc/{pid}/stat")) else {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low telemetry production #e6b7b0b81bf15ab7 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/session.rs:216
                    tracing::info!(attempt, "sandbox request recovered on a fresh session");

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #a12a55a0cd34187e Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/session.rs:226
                tracing::warn!(
                    attempt,
                    max_attempts,
                    reason = reason.as_str(),
                    operation = operation_label(operation),
                    error_code = err.code(),
                    error = %err,
                    "sandbox request failed; retries exhausted"
                );

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #cf11fe0a68bdd332 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/session.rs:340
    tracing::warn!(
        attempt,
        max_attempts,
        reason = reason.as_str(),
        operation = operation_label(operation),
        error_code = err.code(),
        error = %err,
        "retrying sandbox request on a fresh session"
    );

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #fe50c732b7ca1e35 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/session.rs:373
        tracing::warn!(error_code = err.code(), error = %err, "dropping stale sandbox session");

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #70e90142e35dbcd0 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/session.rs:426
                tracing::debug!(
                    max = MAX_CONCURRENT_HANDLERS,
                    "sandbox handler pool saturated; waiting for a permit"
                );

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #665659a2cfa129af Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/session.rs:494
            tracing::warn!(
                panic = message,
                ?fault,
                recovered = true,
                "recovered an engine fault from a sandbox handler panic"
            );

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low telemetry production #579067f97136cb55 Log/trace emission. Structured logs can carry PII to sinks/aggregators.
repo/platform/archestra-rs/sandbox-core/src/session.rs:506
            tracing::error!(
                panic = message,
                recovered = false,
                "recovered a panic in a sandbox handler"
            );

A telemetry/analytics SDK is used; event data is sent to a third-party collector.

Fix: Ensure user consent and a lawful basis; strip PII from event payloads.

low env_fs production #c9c5c034c46564ff Environment-variable access.
repo/platform/archestra-rs/sandbox-core/src/telemetry.rs:187
        env::var("ARCHESTRA_OTEL_EXPORTER_OTLP_ENDPOINT")

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs production #e017e88ffe741843 Environment-variable access.
repo/platform/archestra-rs/sandbox-core/src/telemetry.rs:199
            env::var(key)

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

</> Dependencies

cryptography

rust dependency
expand_more 26 low-confidence finding(s)
low env_fs tooling Excluded from app score unreachable #1e685643bac259c4 Filesystem access.
pkgs/rust/[email protected]/docs/development/custom-vectors/aes-192-gcm-siv/verify-aes192gcmsiv/src/main.rs:49
    let file = File::open(filename).expect("Failed to open file");

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #1e9696a77e77c69e Environment-variable access.
pkgs/rust/[email protected]/src/rust/build.rs:11
    if let Ok(version) = env::var("DEP_OPENSSL_VERSION_NUMBER") {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #6062eb9ddbbcdf8d Environment-variable access.
pkgs/rust/[email protected]/src/rust/build.rs:28
    if env::var("DEP_OPENSSL_LIBRESSL_VERSION_NUMBER").is_ok() {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #8bfa81e4e68222a6 Environment-variable access.
pkgs/rust/[email protected]/src/rust/build.rs:32
    if env::var("DEP_OPENSSL_BORINGSSL").is_ok() {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #dec64fabb51a8db1 Environment-variable access.
pkgs/rust/[email protected]/src/rust/build.rs:36
    if env::var("DEP_OPENSSL_AWSLC").is_ok() {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #89b3cacc930bd312 Environment-variable access.
pkgs/rust/[email protected]/src/rust/build.rs:40
    if env::var("CRYPTOGRAPHY_BUILD_OPENSSL_NO_LEGACY").is_ok_and(|v| !v.is_empty() && v != "0") {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #e98589ac12b5fbff Environment-variable access.
pkgs/rust/[email protected]/src/rust/build.rs:44
    if let Ok(vars) = env::var("DEP_OPENSSL_CONF") {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #1a184142705cec54 Environment-variable access.
pkgs/rust/[email protected]/src/rust/build.rs:57
    if env::var("CARGO_CFG_TARGET_OS").as_deref() == Ok("macos") {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #230c973a737f7589 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-cffi/build.rs:10
    let target = env::var("TARGET").unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #b01f13b534786dea Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-cffi/build.rs:11
    let openssl_static = env::var("OPENSSL_STATIC")

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #2753a5f1be898099 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-cffi/build.rs:25
    let out_dir = env::var("OUT_DIR").unwrap();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #78c5e032bc0239fb Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-cffi/build.rs:27
    let python = env::var("PYO3_PYTHON").unwrap_or_else(|_| "python3".to_string());

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #7123cf2bd35bcad9 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-cffi/build.rs:57
    let python_includes = if let Ok(lib_dir) = env::var("PYO3_CROSS_LIB_DIR") {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #4062b3da73d562bb Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-cffi/build.rs:89
        .includes(std::env::var_os("DEP_OPENSSL_INCLUDE"))

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #2d78abd0f1d61edc Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-key-parsing/build.rs:9
    if env::var("DEP_OPENSSL_LIBRESSL_VERSION_NUMBER").is_ok() {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #17a25498c1fb765c Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-key-parsing/build.rs:13
    if env::var("DEP_OPENSSL_BORINGSSL").is_ok() {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #43ca958f0fd6d101 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-key-parsing/build.rs:17
    if env::var("DEP_OPENSSL_AWSLC").is_ok() {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #32148f5d30936255 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-key-parsing/build.rs:21
    if let Ok(version) = env::var("DEP_OPENSSL_VERSION_NUMBER") {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #11584aff80a9e772 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-key-parsing/build.rs:28
    if let Ok(vars) = env::var("DEP_OPENSSL_CONF") {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #2d4996ec9cad2064 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-openssl/build.rs:9
    if let Ok(version) = env::var("DEP_OPENSSL_VERSION_NUMBER") {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #f42bc8bafb2ea026 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-openssl/build.rs:20
    if env::var("DEP_OPENSSL_LIBRESSL_VERSION_NUMBER").is_ok() {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #c613a42a6aeb8dc4 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-openssl/build.rs:24
    let is_boringssl = env::var("DEP_OPENSSL_BORINGSSL").is_ok();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #c69aef30adaf8c8a Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-openssl/build.rs:25
    let is_awslc = env::var("DEP_OPENSSL_AWSLC").is_ok();

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #9779c6949559ec00 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-openssl/build.rs:34
        if env::var_os("CARGO_CFG_UNIX").is_some() {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #7f5c3620ca8791f4 Environment-variable access.
pkgs/rust/[email protected]/src/rust/cryptography-openssl/build.rs:35
            match env::var("CARGO_CFG_TARGET_OS").as_deref() {

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

low env_fs dependency Excluded from app score #332ea72370669a12 Environment-variable access.
pkgs/rust/[email protected]/src/rust/src/lib.rs:90
        && !env::var("CRYPTOGRAPHY_OPENSSL_NO_LEGACY").is_ok_and(|v| !v.is_empty() && v != "0");

Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.

Fix: Usually benign; confirm any secret read here is not later sent externally.

Skipped dependencies

Production

  • @archestra/shared prod — registry 404
  • @better-auth/oauth-provider prod — dist-only: no readable source
  • @better-auth/sso prod — dist-only: no readable source
  • better-auth prod — dist-only: no readable source
  • next prod — tarball exceeds byte cap
  • use-stick-to-bottom prod — dist-only: no readable source
  • @archestra/app-runtime-rs prod — registry 404
  • @archestra/image-rs prod — registry 404
  • @archestra/sandbox-rs prod — registry 404
  • @azure/identity prod — dist-only: no readable source
  • @chonkiejs/core prod — dist-only: no readable source
  • @better-auth/api-key prod — dist-only: no readable source
  • @gitbeaker/rest prod — dist-only: no readable source
  • @google/genai prod — dist-only: no readable source
  • @keyv/postgres prod — dist-only: no readable source
  • @kubiks/otel-drizzle prod — dist-only: no readable source
  • @linear/sdk prod — dist-only: no readable source
  • @kubernetes/client-node prod — dist-only: no readable source
  • @microsoft/kiota-authentication-azure prod — dist-only: no readable source
  • @slack/socket-mode prod — dist-only: no readable source
  • @slack/web-api prod — dist-only: no readable source
  • @toon-format/toon prod — dist-only: no readable source
  • aws4fetch prod — dist-only: no readable source
  • fastify-metrics prod — dist-only: no readable source
  • jose prod — dist-only: no readable source
  • keyv prod — dist-only: no readable source
  • @archestra/napi-loader prod — registry 404
  • pandas prod — scan budget exceeded
  • github.com/moby/go-archive prod — scan budget exceeded
  • github.com/moby/profiles/seccomp prod — scan budget exceeded
  • github.com/moby/sys/reexec prod — scan budget exceeded
  • github.com/moby/sys/user prod — scan budget exceeded
  • github.com/opencontainers/runtime-spec prod — scan budget exceeded
  • archestra-bench-core prod — scan budget exceeded
  • nitpicker-agent prod — scan budget exceeded
  • rig-core prod — scan budget exceeded
  • tokio prod — scan budget exceeded
  • eyre prod — scan budget exceeded
  • serde prod — scan budget exceeded
  • serde_json prod — scan budget exceeded
  • futures prod — scan budget exceeded
  • glob prod — scan budget exceeded
  • chrono prod — scan budget exceeded
  • tempfile prod — scan budget exceeded
  • indicatif prod — scan budget exceeded
  • archestra_bench prod — scan budget exceeded
  • trajectory-analyzer prod — scan budget exceeded
  • bench-dashboard prod — scan budget exceeded
  • clap prod — scan budget exceeded
  • tracing prod — scan budget exceeded
  • tracing-subscriber prod — scan budget exceeded
  • toml prod — scan budget exceeded
  • thiserror prod — scan budget exceeded
  • axum prod — scan budget exceeded
  • askama prod — scan budget exceeded
  • tower-http prod — scan budget exceeded
  • pulldown-cmark prod — scan budget exceeded
  • percent-encoding prod — scan budget exceeded
  • reqwest prod — scan budget exceeded
  • url prod — scan budget exceeded
  • jsonschema prod — scan budget exceeded
  • rmcp prod — scan budget exceeded
  • nix prod — scan budget exceeded
  • regex prod — scan budget exceeded
  • tokio-postgres prod — scan budget exceeded
  • bytes prod — scan budget exceeded
  • base64 prod — scan budget exceeded
  • sha2 prod — scan budget exceeded
  • tokio-util prod — scan budget exceeded
  • uuid prod — scan budget exceeded
  • tl prod — scan budget exceeded
  • app_runtime_core prod — scan budget exceeded
  • napi prod — scan budget exceeded
  • napi-derive prod — scan budget exceeded
  • image prod — scan budget exceeded
  • image_core prod — scan budget exceeded
  • dagger-sdk prod — scan budget exceeded
  • futures-util prod — scan budget exceeded
  • opentelemetry prod — scan budget exceeded
  • opentelemetry_sdk prod — scan budget exceeded
  • opentelemetry-otlp prod — scan budget exceeded
  • opentelemetry-appender-tracing prod — scan budget exceeded
  • tracing-opentelemetry prod — scan budget exceeded
  • sandbox_core prod — scan budget exceeded