github.com / ai-to-ai
ai-to-ai/ Auto-Gmail-Creator
Python·14 files·commit e179bd0·scanned 2h ago·cached ✓
25/100
LOW RISK
Minor findings consistent with the project type. Nothing reachable from install hooks.
score capped at 25 — 1,391 stars — findings likely legitimate code patterns
verdict accurate?
threat-state: lowlive
FINDINGS ░▒▓
criticalBrowser credential store accessAccessing Chrome, Firefox, Edge, or Brave profile directories to steal cookies, passwords, and session tokens.app.py
# options.add_argument("--incognito")
# options.add_argument(r"--user-data-dir=C:\\Users\\Username\\AppData\\Local\\Google\\Chrome\\User Data")
# options.add_argument(r'--profile-directo...+10warningHigh-entropy string literalsFound 77 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.app.py+3
warningHardcoded secret/credentialAPI keys, passwords, or tokens hardcoded in source code. Should be in environment variables.app.py
# Your SMS-Activate API key API_KEY = "8e49fdB90d0209c085dd1df56cedf00e" #9b6b9eb50d0A30---------d9b7495b COUNTRY_CODE = "175" #i.e, Austrailian country code, See country table in sms-activate. I of...+3
Scores are heuristics. A “safe” verdict means no known-malicious patterns were found — clever malware can look boring. Wrong verdict? Flag it above; confirmed false positives become regression tests.
1 files scanned @ e179bd0 | 9/25/2026 | heuristic scan — always review manually
risk by category
code execution0
network & exfiltration0
file system access10
obfuscation3
supply chain0
owasp / injection3
telemetry
files 1/14rules hit 3engine v6commit e179bd0
github
ai-to-ai/Auto-Gmail-Creator
Open Source Bulk Auto Gmail Creator Bot with Selenium & Seleniumwire ( Python ). Feel free to contact me with Django/Flask, ML, AI, GPT, Automation, Scraping.
1391
759
1313d
14 files
1 scanned(7%)
e179bd0
architecture░▒▓
entry (1) flagged (1) pkg (19)
20 nodes · 19 edgesscroll to zoom · click node to jump to finding