📦

Audit-Verlauf

buddy-sings - 2 Audits

Audit-Version 2

Neueste Mittleres Risiko

May 27, 2026, 05:28 PM

AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.

1
Gescannte Dateien
446
Analysierte Zeilen
3
befunde
claude
Auditiert von
Keine Sicherheitsprobleme gefunden

Erkannte Muster

Ruby/shell backtick executionPython HTTP librariesHardcoded URLHidden file in home directoryHidden file accessStandard device file accessWeak cryptographic algorithmSystem reconnaissance

Audit-Version 1

Sicher

Apr 16, 2026, 06:07 AM

All 99 static analysis findings are false positives. The scanner misinterpreted markdown code fences (```bash) in SKILL.md as Ruby backtick execution. The file is documentation containing legitimate shell command examples for AI agent use, such as mmx CLI music generation, git log queries, and audio playback commands. No malicious patterns, credential exfiltration, or user input injection vectors were found. The skill is safe for publication.

1
Gescannte Dateien
446
Analysierte Zeilen
0
befunde
claude
Auditiert von
Keine Sicherheitsprobleme gefunden