Audit-Verlauf
sharepoint-audit - 6 Audits
Audit-Version 6
Neueste Mittleres RisikoJun 28, 2026, 10:10 AM
Static analysis correctly identified local PowerShell and Python command execution guidance, which is central to this SharePoint audit workflow. Several high-severity matches are contextual mentions or Markdown formatting false positives, and no prompt injection or malicious exfiltration intent was found. Publish with a warning because the skill handles secrets, installs modules, and produces sensitive SharePoint audit reports.
Probleme mit mittlerem Risiko (3)
Probleme mit niedrigem Risiko (3)
Risikofaktoren
⚙️ Externe Befehle (2)
Erkannte Muster
Audit-Version 5
Niedriges RisikoJan 16, 2026, 03:54 PM
Legitimate SharePoint permission audit tool. Static findings are false positives - the tool requires command execution, network access, and credential handling because these are necessary capabilities for a security auditing tool. All operations are documented, local-only, and follow security-conscious practices (credentials from env vars, no secret echoing, explicit warnings about sensitive report data).
Probleme mit niedrigem Risiko (2)
Risikofaktoren
⚙️ Externe Befehle (1)
📁 Dateisystemzugriff (1)
🔑 Umgebungsvariablen (1)
Audit-Version 4
Niedriges RisikoJan 16, 2026, 03:54 PM
Legitimate SharePoint permission audit tool. Static findings are false positives - the tool requires command execution, network access, and credential handling because these are necessary capabilities for a security auditing tool. All operations are documented, local-only, and follow security-conscious practices (credentials from env vars, no secret echoing, explicit warnings about sensitive report data).
Probleme mit niedrigem Risiko (2)
Risikofaktoren
⚙️ Externe Befehle (1)
📁 Dateisystemzugriff (1)
🔑 Umgebungsvariablen (1)
Audit-Version 3
Niedriges RisikoJan 10, 2026, 10:20 AM
Prompt-based skill that provides instructions for running SharePoint audit scripts locally. Includes security-conscious rules and is appropriate for its stated administrative purpose.
Probleme mit niedrigem Risiko (2)
Risikofaktoren
⚙️ Externe Befehle (1)
📁 Dateisystemzugriff (1)
🔑 Umgebungsvariablen (1)
Audit-Version 2
Niedriges RisikoJan 10, 2026, 10:20 AM
Prompt-based skill that provides instructions for running SharePoint audit scripts locally. Includes security-conscious rules and is appropriate for its stated administrative purpose.
Probleme mit niedrigem Risiko (2)
Risikofaktoren
⚙️ Externe Befehle (1)
📁 Dateisystemzugriff (1)
🔑 Umgebungsvariablen (1)
Audit-Version 1
Niedriges RisikoJan 10, 2026, 10:20 AM
Prompt-based skill that provides instructions for running SharePoint audit scripts locally. Includes security-conscious rules and is appropriate for its stated administrative purpose.