No material or immediate-danger concern was identified in this review.
This advisory report describes what the named tools and review process found at one exact commit. Unknown or unobserved behavior may still exist.
0 immediate danger
0 material
1 low
What this review found
No material or immediate-danger item was identified.
Minor cautions
JavaScript analysis reported javascript.xray.unsafe-regex
Minor caution · medium confidence
A static scanner flagged some regular expressions in the extension's code that strips its own image blocks from chat messages. Reviewing the actual patterns, they are straightforward and do not show the nested repetition that causes dangerous freeze-ups. Even in a worst case, any slowdown would only affect the user's own browser tab.
Technical evidence
Scanner reason: JavaScript analysis matched static JavaScript security signal javascript.xray.unsafe-regex. The match applies to this repository.
Contextual assessment: JS-X-Ray flagged 3 occurrences of an unsafe-regex signal at line 147. The flagged line is PROMPT_ATTRIBUTE, a regex used in stripInlayContent to remove the extension's own HTML attributes from assistant message content before forwarding to model APIs. The pattern /(?:[^
Impact: low · Exploitability: unlikely
Developer action: No action required. The flagged regexes are straightforward patterns appropriate for the extension's content-stripping purpose. If desired, consider adding input length limits on message content before applying regex replacements as defense-in-depth against pathological inputs.
Scanner javascript-analysis webcrack-2.16.0_js-x-ray-16.0.0_signatures-1_literals-1_families-1
Rule javascript.xray.unsafe-regex
File role generated
Source dist/backend.js:147
Coverage and limitations
Inventory 64 files · 713647 bytes
Contextual coverage 1 of 1 candidates assessed
JavaScript coverage
Status Incomplete
Candidates 52 files · 437967 bytes
X-Ray review families 3 warning occurrences compacted to 1 evidence-preserving review families
Representations 52 raw · 1 decoded · 0 normalized · 0 bundle modules
Stage scans 52 raw signatures · 6 raw AST · 52 raw OpenGrep · 1 derived signatures · 0 derived AST · 1 derived OpenGrep
Unresolved JavaScript stages src/backend.test.ts — raw-ast / parsesrc/backend.ts — raw-ast / parsesrc/backend/context.test.ts — raw-ast / parsesrc/backend/context.ts — raw-ast / parsesrc/backend/generation.test.ts — raw-ast / parsesrc/backend/generation.ts — raw-ast / parsesrc/backend/images.ts — raw-ast / parsesrc/backend/inlay-content.test.ts — raw-ast / parsesrc/backend/inlay-content.ts — raw-ast / parsesrc/backend/instructions.ts — raw-ast / parsesrc/backend/logging.ts — raw-ast / parsesrc/backend/memory.test.ts — raw-ast / parsesrc/backend/memory.ts — raw-ast / parsesrc/backend/paragraphs.ts — raw-ast / parsesrc/backend/parser-repair.test.ts — raw-ast / parsesrc/backend/parser.ts — raw-ast / parsesrc/backend/prompt.test.ts — raw-ast / parsesrc/backend/prompt.ts — raw-ast / parsesrc/backend/rendering.ts — raw-ast / parsesrc/backend/scenes.ts — raw-ast / parsesrc/backend/storage.test.ts — raw-ast / parsesrc/backend/storage.ts — raw-ast / parsesrc/backend/types.ts — raw-ast / parsesrc/backend/utils.ts — raw-ast / parsesrc/frontend.ts — raw-ast / parsesrc/frontend/api.test.ts — raw-ast / parsesrc/frontend/api.ts — raw-ast / parsesrc/frontend/contracts.ts — raw-ast / parsesrc/frontend/lightbox.ts — raw-ast / parsesrc/frontend/message-router.test.ts — raw-ast / parsesrc/frontend/message-router.ts — raw-ast / parsesrc/frontend/renderer.ts — raw-ast / parsesrc/frontend/sections/diagnostics.ts — raw-ast / parsesrc/frontend/sections/generation.ts — raw-ast / parsesrc/frontend/sections/index.ts — raw-ast / parsesrc/frontend/sections/memory-actions.test.ts — raw-ast / parsesrc/frontend/sections/memory-actions.ts — raw-ast / parsesrc/frontend/sections/memory.ts — raw-ast / parsesrc/frontend/sections/output.ts — raw-ast / parsesrc/frontend/sections/parser.ts — raw-ast / parsesrc/frontend/sections/prompt.ts — raw-ast / parsesrc/frontend/sections/section-context.ts — raw-ast / parsesrc/frontend/ui-builder.test.ts — raw-ast / parsesrc/frontend/ui-builder.ts — raw-ast / parsesrc/shared/config.test.ts — raw-ast / parsesrc/shared/config.ts — raw-ast / parse
Tools
Limitations
This advisory review cannot prove the absence of unknown behavior. JavaScript analysis was incomplete, so this first-filter scan supports no clean conclusion about unobserved behavior.
Technical scan identity
Full commit d757aa9d876a806775f4ca4cacf69ff4f53f4df5
Completed Aug 24, 2026
History depth 20 commits
Method Deterministic evidence with contextual review
Reviewer nano-gpt.com · zai-org/glm-latest
Scanner 0.1.0
Scanner policy 5
Rule catalog 2
Contextual policy 5
Ecosystem context sillytavern-community-v1
Prompt contextual-review-v7
Assessment schema contextual-assessment-v2
Review provenance 1 fresh / 0 reused groups · 1 fresh / 0 reused candidates
Review source reports none
Evidence triage 0 deterministic / 1 contextual candidates · 1 contextual / 1 total behavior cases
Model budget 1 model call · 1 / 12 fresh cases · 26304 / 200000 estimated input · 22883 / 250000 actual input · 1117 / 40000 output tokens
Review batching 1 model call · up to 1 groups and 1 candidates per call · 0 retry calls · 0 over-budget singleton calls
Review usage 22883 input · 1117 output · 1472 cache read · 0 reasoning tokens
Report 35f8217741988b1313315c39349f4283ab84e8aa4f69e08dab966bf874e46756