github.com / synclify
synclify/ Synclify
TypeScript·116 files·commit e0060b3·scanned 28m ago·cached ✓
44/100
SUSPICIOUS
Obfuscation or dynamic code paths detected. Intent unclear — review before running anything.
verdict accurate?
threat-state: suspiciouslive
FINDINGS ░▒▓
warningFlattened or dead control flowDetected switch(true), dead if branches, or deeply nested ternaries — patterns used by obfuscators to hide execution order.server/app.ts+3
warningHigh-entropy string literalsFound 3 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.server/call-registry.ts+3
warningFlattened or dead control flowDetected switch(true), dead if branches, or deeply nested ternaries — patterns used by obfuscators to hide execution order.server/call-registry.ts+3
warningHigh-entropy string literalsFound 8 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.src/components/VpnPromo.tsx+3
warningHigh-entropy string literalsFound 34 long strings with high Shannon entropy. This is common in obfuscated payloads that hide URLs, keys, or bytecode.src/components/communication/CommunicationPanel.tsx+3
warningFlattened or dead control flowDetected switch(true), dead if branches, or deeply nested ternaries — patterns used by obfuscators to hide execution order.src/components/communication/CommunicationPanel.tsx+3
warningPossible typosquat: preact"preact" is only 1 character(s) away from the popular package "react". This is a common supply-chain attack vector.package.json+4
warningDependency runs install scripts"<root>/postinstall" executes code during installation. Malicious packages use this to drop payloads before the app even runs.package.json+3
Scores are heuristics. A “safe” verdict means no known-malicious patterns were found — clever malware can look boring. Wrong verdict? Flag it above; confirmed false positives become regression tests.
85 files scanned @ e0060b3 | 9/25/2026 | heuristic scan — always review manually
risk by category
code execution2
network & exfiltration0
file system access0
obfuscation15
supply chain7
owasp / injection0
telemetry
files 85/116rules hit 9engine v6commit e0060b3
github
synclify/Synclify
Watch any streaming content in sync with your friend.
122
10
1417d
116 files
85 scanned(73%)
e0060b3
architecture░▒▓
entry (0) flagged (14) pkg (83)
150 nodes · 224 edgesscroll to zoom · click node to jump to finding