live · scanning repos
Scanrepo
github.com
github.com / Sor3nt

Sor3nt/Flipper-Zero-ESP32-Port

C·5024 files·commit 2e44863·scanned 3d ago·cached ✓
34/100
SUSPICIOUS
Obfuscation or dynamic code paths detected. Intent unclear — review before running anything.
verdict accurate?
1% file coverage
Research / educational context
CLI tool detected
threat-state: suspiciouslive

FINDINGS ░▒▓

criticalchild_process / exec usageExecuting shell commands can be used to download and run malware, exfiltrate data, or modify system files.applications/system/js_app/packages/create-fz-app/index.js
    console.log("Installing packages...");
    spawnSync("bash", ["-c", `cd ${name} && ${pkgManager} install`], {
        cwd: process.cwd(),
        detached: true,
+8
infoSuspicious files are not reachable from entry pointsFlagged files exist but are not imported by any entry point. They may be dead code, tests, or attack payloads triggered by another mechanism.+2
warningHigh-entropy string literalsFound 3 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.applications/debug/ccid_test/client/ccid_client.py+3
warningHigh-entropy string literalsFound 3 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.applications/system/js_app/packages/fz-sdk/sdk.js+3
infoSuspicious file in repoExecutable file (gradlew.bat) in repositoryapplications_user/TagTinker-main/android-companion/gradlew.bat+2
infoSuspicious file in repoExecutable file (build.ps1) in repositoryapplications_user/flipper-zero_authenticator/build.ps1+2
infoSuspicious file in repoExecutable file (generate-font.ps1) in repositoryapplications_user/flipper-zero_authenticator/generate-font.ps1+2

Scores are heuristics. A “safe” verdict means no known-malicious patterns were found — clever malware can look boring. Wrong verdict? Flag it above; confirmed false positives become regression tests.

48 files scanned @ 2e44863 | 8/21/2026 | heuristic scan — always review manually

risk by category
code execution10
network & exfiltration0
file system access0
obfuscation6
supply chain15
owasp / injection0
telemetry
files 48/5024rules hit 7engine v5commit 2e44863

github

Sor3nt/Flipper-Zero-ESP32-Port

C
394
89
143d
5024 files
48 scanned(1%)
2e44863

architecture░▒▓

entry (0) flagged (3) pkg (42)
74 nodes · 72 edgesscroll to zoom · click node to jump to finding
SUSPICIOUS (34/100) — Sor3nt/Flipper-Zero-ESP32-Port — ScanRepo