Audit-Verlauf
security-checklist - 6 Audits
Audit-Version 6
Neueste Mittleres RisikoJun 28, 2026, 10:30 AM
Static analysis flagged many dangerous patterns, but review shows they are mostly documentation examples, defensive test payloads, and checklist items. No malicious intent or prompt injection was found. The skill still carries medium operational risk because it instructs agents to run local scanners, write scan reports, and handle secret-scan results.
Probleme mit mittlerem Risiko (3)
Probleme mit niedrigem Risiko (3)
Risikofaktoren
⚡ Enthält Skripte (2)
⚙️ Externe Befehle (11)
🌐 Netzwerkzugriff (6)
📁 Dateisystemzugriff (2)
🔑 Umgebungsvariablen (3)
Erkannte Muster
Audit-Version 5
SicherJan 16, 2026, 05:07 PM
This skill is a pure markdown knowledge base containing only security documentation and educational code examples. No executable code, network calls, filesystem access, or external commands are present. All static findings (194 patterns) are false positives triggered by educational examples showing both vulnerable and secure coding patterns for documentation purposes.
Risikofaktoren
⚡ Enthält Skripte (2)
⚙️ Externe Befehle (2)
🌐 Netzwerkzugriff (2)
Audit-Version 4
SicherJan 16, 2026, 05:07 PM
This skill is a pure markdown knowledge base containing only security documentation and educational code examples. No executable code, network calls, filesystem access, or external commands are present. All static findings (194 patterns) are false positives triggered by educational examples showing both vulnerable and secure coding patterns for documentation purposes.
Risikofaktoren
⚡ Enthält Skripte (2)
⚙️ Externe Befehle (2)
🌐 Netzwerkzugriff (2)
Audit-Version 3
SicherJan 10, 2026, 10:51 AM
This skill is a pure markdown knowledge base. It contains only documentation and security guidance examples. No executable code, scripts, network calls, filesystem access, or external commands are present. The skill is a read-only reference for AI agents to understand security best practices.
Audit-Version 2
SicherJan 10, 2026, 10:51 AM
This skill is a pure markdown knowledge base. It contains only documentation and security guidance examples. No executable code, scripts, network calls, filesystem access, or external commands are present. The skill is a read-only reference for AI agents to understand security best practices.
Audit-Version 1
SicherJan 10, 2026, 10:51 AM
This skill is a pure markdown knowledge base. It contains only documentation and security guidance examples. No executable code, scripts, network calls, filesystem access, or external commands are present. The skill is a read-only reference for AI agents to understand security best practices.