Audit-Verlauf
denario - 4 Audits
Audit-Version 4
Neueste Niedriges RisikoJan 17, 2026, 06:45 AM
All 369 static findings are FALSE POSITIVES. The skill is documentation-only with bash command examples, API key configuration patterns, and file operations for research project management - all legitimate documented functionality for a scientific research automation tool.
Risikofaktoren
⚙️ Externe Befehle (224)
📁 Dateisystemzugriff (8)
🌐 Netzwerkzugriff (9)
🔑 Umgebungsvariablen (21)
Audit-Version 3
Niedriges RisikoJan 17, 2026, 06:45 AM
All 369 static findings are FALSE POSITIVES. The skill is documentation-only with bash command examples, API key configuration patterns, and file operations for research project management - all legitimate documented functionality for a scientific research automation tool.
Risikofaktoren
⚙️ Externe Befehle (224)
📁 Dateisystemzugriff (8)
🌐 Netzwerkzugriff (9)
🔑 Umgebungsvariablen (21)
Audit-Version 2
SicherJan 12, 2026, 04:18 PM
Denario is a legitimate scientific research automation tool. All 351 static findings are FALSE POSITIVES - the scanner flagged documentation patterns (bash examples, credential configuration instructions, variable names containing 'md5') without understanding context. No malicious patterns confirmed after manual review of all files.
Risikofaktoren
⚙️ Externe Befehle (224)
📁 Dateisystemzugriff (8)
🌐 Netzwerkzugriff (8)
🔑 Umgebungsvariablen (21)
Audit-Version 1
SicherJan 4, 2026, 05:10 PM
This is a documentation-only skill containing markdown files and JSON metadata. No executable Python code, scripts, or network calls are present in this repository. The skill describes a legitimate research automation tool built on AG2 and LangGraph frameworks.