📦

سجل التدقيق

inbox-placement-monitor - 10 عمليات التدقيق

مقارنة الإصدارات

التغييرات في القدرات والنتائج عبر الإصدارات المدقّقة، الأحدث أولاً.

الإصدارالتاريخالنتيجةعناصر المراجعةالتغيير مقارنةً بالسابقة
v10 الأحدث٢٦ يوليو ٢٠٢٦، ١٠:٢١ ص لا توجد نتائج مؤكَّدة1لا تغيير في القدرات
v9 ٢٦ يوليو ٢٠٢٦، ١٠:٢١ ص لا توجد نتائج مؤكَّدة1لا تغيير في القدرات
v8 ١٣ يوليو ٢٠٢٦، ٠١:٤٦ م لا توجد نتائج مؤكَّدة1لا تغيير في القدرات
v7 ١٣ يوليو ٢٠٢٦، ٠١:٤٦ م لا توجد نتائج مؤكَّدة1لا تغيير في القدرات
v6 ١٢ يوليو ٢٠٢٦، ١٢:٣٠ م 2 مؤكَّد1لا تغيير في القدرات
v5 ١٠ يوليو ٢٠٢٦، ١٠:٥٩ ص لا توجد نتائج مؤكَّدة2لا تغيير في القدرات
v4 ٩ يوليو ٢٠٢٦، ١١:٥١ ص لا توجد نتائج مؤكَّدة1لا تغيير في القدرات
v3 ٦ يوليو ٢٠٢٦، ٠٥:٢٢ م لا توجد نتائج مؤكَّدة1لا تغيير في القدرات
v2 ٦ يوليو ٢٠٢٦، ٠٥:٢٢ م لا توجد نتائج مؤكَّدة1لا تغيير في القدرات
v1 ٤ يوليو ٢٠٢٦، ٠٤:١٣ م لا توجد نتائج مؤكَّدة1الأساس

٢٦ يوليو ٢٠٢٦، ١٠:٢١ ص

One finding is confirmed: SKILL.md documents a Python connector whose --live mode sends seed emails through Resend. The other 54 alerts are Markdown links, code formatting, metadata URLs, or benign monitoring language; no prompt injection was found.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
4
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة
عناصر مراجعة القدرات (1)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

متوسط
Ruby/shell backtick execution
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
The line documents a Python connector command whose --live option sends seed emails through Resend. Dry-run defaults reduce exposure, but the outbound side effect is real.
دقّقه: claude

٢٦ يوليو ٢٠٢٦، ١٠:٢١ ص

One finding is confirmed: SKILL.md documents a Python connector whose --live mode sends seed emails through Resend. The other 54 alerts are Markdown links, code formatting, metadata URLs, or benign monitoring language; no prompt injection was found.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
4
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة
عناصر مراجعة القدرات (1)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

متوسط
Ruby/shell backtick execution
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
The line documents a Python connector command whose --live option sends seed emails through Resend. Dry-run defaults reduce exposure, but the outbound side effect is real.
دقّقه: claude

١٣ يوليو ٢٠٢٦، ٠١:٤٦ م

Fifty-four of 55 static alerts are false positives caused by Markdown backticks, relative documentation links, homepage metadata, or ordinary workflow prose. The command on SKILL.md line 52 is a genuine external action because --live sends email through Resend, but dry-run is the documented default. No prompt injection or hidden data-exfiltration intent was found.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
4
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة
عناصر مراجعة القدرات (1)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

متوسط
Ruby/shell backtick execution
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
SKILL.md line 52 instructs the agent to invoke a Python connector, and the optional --live flag sends email through Resend. This is a real external command with network side effects, although dry-run is the documented default.
دقّقه: codex

١٣ يوليو ٢٠٢٦، ٠١:٤٦ م

أربعة وخمسون من أصل 55 تنبيهًا ثابتًا هي نتائج إيجابية كاذبة ناتجة عن علامات Markdown الخلفية، وروابط التوثيق النسبية، وبيانات الصفحة الرئيسية الوصفية، أو نصوص سير العمل العادية. الأمر في SKILL.md بالسطر 52 هو إجراء خارجي حقيقي لأن ‎--live يرسل البريد الإلكتروني عبر Resend، لكن التشغيل التجريبي هو الإعداد الافتراضي الموثق. لم يُعثر على أي حقن للمطالبات أو نية خفية لاستخراج البيانات.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
4
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة
عناصر مراجعة القدرات (1)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

متوسط
تنفيذ Ruby/shell بعلامات الاقتباس الخلفية
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
يوجّه SKILL.md في السطر 52 الوكيل إلى استدعاء موصل Python، وتؤدي علامة ‎--live الاختيارية إلى إرسال البريد الإلكتروني عبر Resend. هذا أمر خارجي حقيقي له آثار جانبية على الشبكة، رغم أن التشغيل التجريبي هو الإعداد الافتراضي الموثق.
دقّقه: codex

١٢ يوليو ٢٠٢٦، ١٢:٣٠ م

معظم التنبيهات الثابتة هي نتائج إيجابية كاذبة ناجمة عن علامات الاقتباس الخلفية في Markdown، وروابط التوثيق الثابتة، والبيانات الوصفية للصفحة الرئيسية. تتضمن المهارة أمر Resend مباشرًا مقصودًا، كما يفتقر قالب الحفظ الخاص بها إلى إرشادات صريحة لتنقية اسم الملف.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
6
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة

مخاوف أمنية مؤكدة (2)

متوسط
إجراء مباشر لإرسال بريد إلكتروني صادر
يرسل سير عمل --live الموثّق رسالة واحدة لكل صندوق بريد تجريبي عبر Resend. يمكن لهذا الأثر الجانبي الخارجي كشف محتوى الحملة وعناوين المستلمين لخدمة البريد الإلكتروني المهيأة.
ينص السطر 52 صراحةً على أن --live يطلق الاختبار التجريبي عبر نقطة نهاية للمعالجة الدفعية، بينما يكون التشغيل التجريبي هو الوضع الافتراضي.
متوسط
افتقار اسم ملف الحفظ المشتق من المستخدم إلى إرشادات التنقية
يضع قالب الحفظ نطاقًا أو موضوعًا في اسم ملف دون اشتراط التطبيع. قد تؤدي فواصل المسار غير الآمنة أو إدخالات الدليل الأب إلى إعادة توجيه الكتابة خارج مجلد الذاكرة المقصود.
يستخدم السطر 70 القيمة <domain-or-topic> مباشرةً في اسم الملف الوجهة، لكن المضيف الأساسي قد ينقّي المسارات المُنشأة بشكل مستقل.
عناصر مراجعة القدرات (1)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

متوسط
تنفيذ علامات الاقتباس الخلفية في Ruby/الصدفة
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
يوجّه السطر 52 الوكيل إلى تشغيل موصل Python ويسمح باستخدام --live، الذي يرسل الرسائل عبر Resend. هذه وظيفة مقصودة، لكنها تُحدث آثارًا جانبية تتعلق بالأوامر والشبكة الخارجية.
دقّقه: codex

١٠ يوليو ٢٠٢٦، ١٠:٥٩ ص

Most static findings are false positives caused by Markdown backticks, code fences, repository links, and homepage metadata. Two findings are confirmed: the live seed-send command can transmit email, and the dynamic save filename lacks a required path-normalization rule. No prompt injection, credential exfiltration, or malicious reconnaissance intent was found.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
5
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة
عناصر مراجعة القدرات (2)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

مرتفع
Path traversal sequence
After delivering, ask "Save these results for future sessions?" If yes, write the placement + reputa
The save path directly interpolates <domain-or-topic> without a normalization requirement. A value containing separators or .. could escape the intended memory directory.
متوسط
Ruby/shell backtick execution
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
This line provides a real Python command whose --live flag sends outbound seed emails. The action is legitimate but consequential and requires explicit user approval.
دقّقه: codex

٩ يوليو ٢٠٢٦، ١١:٥١ ص

Most static findings are false positives from Markdown links, inline code formatting, example prompts, and homepage metadata. One medium issue remains: SKILL.md line 52 documents an optional python3 helper that can send live seed emails through Resend. No prompt injection, credential exfiltration, or malicious intent was found.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
4
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة
عناصر مراجعة القدرات (1)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

متوسط
Ruby/shell backtick execution
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
Line 52 documents a real python3 command that can send live seed emails through Resend when --live is used. This is a legitimate feature, but it is an external command with network side effects and should require explicit confirmation.
دقّقه: codex

٦ يوليو ٢٠٢٦، ٠٥:٢٢ م

Most static findings are false positives caused by Markdown code fences, inline SEND-S notation, and relative links to documentation. One medium-risk finding is confirmed: SKILL.md line 52 gives a Python helper command that can send live seed emails through Resend when run with --live. No prompt injection or data-exfiltration intent was found in the reviewed files.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
4
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة
عناصر مراجعة القدرات (1)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

متوسط
Ruby/shell backtick execution
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
SKILL.md line 52 gives a literal python3 helper command that can send live seed emails through Resend when run with --live. This is legitimate automation, but it is external command execution with outbound email side effects.
دقّقه: codex

٦ يوليو ٢٠٢٦، ٠٥:٢٢ م

Most static findings are false positives caused by Markdown code fences, inline SEND-S notation, and relative links to documentation. One medium-risk finding is confirmed: SKILL.md line 52 gives a Python helper command that can send live seed emails through Resend when run with --live. No prompt injection or data-exfiltration intent was found in the reviewed files.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
4
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة
عناصر مراجعة القدرات (1)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

متوسط
Ruby/shell backtick execution
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
SKILL.md line 52 gives a literal python3 helper command that can send live seed emails through Resend when run with --live. This is legitimate automation, but it is external command execution with outbound email side effects.
دقّقه: codex

٤ يوليو ٢٠٢٦، ٠٤:١٣ م

No prompt injection, malicious data exfiltration, arbitrary path traversal, or hidden reconnaissance intent was found in the reviewed files. Most static alerts are Markdown links or inline-code false positives; one documented Resend seed-send command is a real medium-risk external command because it can send live email with --live.

2
الملفات التي تم فحصها
130
الأسطر التي تم تحليلها
4
عناصر المراجعة
0
تم تجاهل الإيجابيات الكاذبة
عناصر مراجعة القدرات (1)

هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.

متوسط
Ruby/shell backtick execution
**Zero-dependency seed-send automation (when Resend is the ESP)**: `python3 "${CLAUDE_PLUGIN_ROOT}/s
Line 52 instructs the agent to run a local Python connector with --live, which can send real seed emails through Resend. The path is fixed and dry-run is documented, but the live external side effect requires explicit confirmation.
دقّقه: codex