n8n

n8n-nodes-enigma

0f392517-dffb-53b1-95a5-6c8afff30f96 | v0.1.0
59/ 100
MEDIUM risk
Risk verdict
Review before use

Score-based assessment (medium risk, 59/100). No analyst review available.

Analysis record

Analysed
6 months ago
Version
v0.1.0
Artifact
SHA256 EE8…EB5
Source
Findings (non-IoC)

Evidence ledger

Ranked by severity · findings with a source location link to the code viewer

77 detail rows
Showing 25 of 52 · highest severity first

YARA Rule Matches

9 rules
SeverityRuleHitsFilesMetadata
LOWpostinstall file download 2
package/README.mdpackage/dist/tsconfig.tsbuildinfo
-
LOWpostinstall persistence mechanism 1
package/dist/tsconfig.tsbuildinfo
-
LOWpostinstall network communication 3
package/LICENSE.mdpackage/dist/tsconfig.tsbuildinfopackage/dist/pnpm-lock.yaml
-
LOWpostinstall registry modification 2
package/dist/pnpm-lock.yamlpackage/README.md
-
LOWpostinstall obfuscation 3
package/dist/nodes/EnigmaNode/EnigmaNode.node.jspackage/dist/tsconfig.tsbuildinfopackage/dist/pnpm-lock.yaml
-
LOWpostinstall environment access 1
package/dist/pnpm-lock.yaml
-
LOWpostinstall file manipulation 2
package/dist/pnpm-lock.yamlpackage/dist/tsconfig.tsbuildinfo
-
LOWpostinstall system command 5
package/dist/nodes/EnigmaNode/EnigmaNode.node.jspackage/dist/tsconfig.tsbuildinfopackage/dist/pnpm-lock.yaml +2 more
-
LOWpostinstall crypto operations 6
package/README.mdpackage/dist/pnpm-lock.yamlpackage/dist/tsconfig.tsbuildinfo +3 more
-

Network Indicators

Concrete URLs, domains, IPs, emails, and hashes extracted from the analyzed artifact.

30,256 total
...

Network indicators are queued for lazy loading

Scroll this section into view to load the detailed rows.

Finding Categories

52
Network
30,256
IoC Indicators

YARA Rules Matched

9 rules(25 hits)
postinstall file download postinstall persistence mechanism postinstall network communication postinstall registry modification postinstall obfuscation postinstall environment access postinstall file manipulation postinstall system command postinstall crypto operations

AI Security Report

AI Security Review

Evidence context: threat category none; evidence quality absent.

Security analysis for n8n-nodes-enigma indicates no detected threats. The evidence bundle provided is empty (findings_by_category: {}), which suggests the scanning process yielded zero security signals or artifacts matching known malicious patterns, tool-poisoning rules, or credential exfiltration signatures. As a community node for the n8n workflow automation platform, this package integrates the Cubbit Enigma encryption library. In the context of n8n, this architecture is standard: the node acts as a wrapper/adapter to expose specific library functionality (encryption/decryption) within the n8n canvas. While encryption tools are inherently powerful, there is no evidence of tool poisoning (hidden AI directives), environment variable exfiltration, or suspicious network activity in the provided data. The absence of findings does not guarantee code safety, but it aligns with expectations for a functional integration node from a community developer.

Key Reasons

  • Empty evidence bundle provided (findings_by_category is empty)
  • Zero network IoCs detected
  • Zero tool-poisoning signatures detected
  • Stated purpose (n8n encryption node) matches expected behavior

False Positive Considerations

  • Insufficient scan data

Reviewed 2026-04-13; recommended action: no action; model confidence 60%.

About This Extension

An n8n community node that integrates the Enigma encryption library by Cubbit, enabling seamless encryption and decryption within n8n workflows using modern algorithms.

Frequently Asked Questions