🧬

Audit-Verlauf

biorxiv-database - 4 Audits

Audit-Version 4

Neueste Sicher

Jan 17, 2026, 05:52 AM

The static analyzer flagged 248 issues, but all are false positives. Markdown documentation backticks were misidentified as shell command execution. The Python script is a straightforward bioRxiv API client that makes legitimate requests to https://api.biorxiv.org, saves results to files, and optionally supports API key authentication. No malicious intent, data exfiltration, or suspicious behavior patterns found.

4
Gescannte Dateien
1,425
Analysierte Zeilen
2
befunde
claude
Auditiert von
Keine Sicherheitsprobleme gefunden

Risikofaktoren

🌐 Netzwerkzugriff (1)
📁 Dateisystemzugriff (1)

Audit-Version 3

Sicher

Jan 17, 2026, 05:52 AM

The static analyzer flagged 248 issues, but all are false positives. Markdown documentation backticks were misidentified as shell command execution. The Python script is a straightforward bioRxiv API client that makes legitimate requests to https://api.biorxiv.org, saves results to files, and optionally supports API key authentication. No malicious intent, data exfiltration, or suspicious behavior patterns found.

4
Gescannte Dateien
1,425
Analysierte Zeilen
2
befunde
claude
Auditiert von
Keine Sicherheitsprobleme gefunden

Risikofaktoren

🌐 Netzwerkzugriff (1)
📁 Dateisystemzugriff (1)

Audit-Version 2

Sicher

Jan 12, 2026, 04:22 PM

The bioRxiv database skill is safe for publication. Static analysis flagged 238 issues, but evaluation shows these are false positives - primarily documentation examples with backticks and legitimate API URLs. The code properly accesses the official bioRxiv API for academic research purposes with appropriate rate limiting.

3
Gescannte Dateien
1,210
Analysierte Zeilen
1
befunde
claude
Auditiert von
Keine Sicherheitsprobleme gefunden

Risikofaktoren

🌐 Netzwerkzugriff (1)

Audit-Version 1

Niedriges Risiko

Jan 4, 2026, 04:43 PM

This is a legitimate Python tool that queries the bioRxiv API and downloads PDFs. It writes results to user-specified paths but has no access to environment variables, no external command execution, and makes only documented API calls to api.biorxiv.org. Behavior matches the stated research purpose.

6
Gescannte Dateien
1,495
Analysierte Zeilen
3
befunde
claude
Auditiert von
Keine Sicherheitsprobleme gefunden