Historial de auditorías
allra-api-design - 6 auditorías
Versión de auditoría 6
Más reciente SeguroJun 28, 2026, 09:23 AM
Static analysis reported external command, weak cryptography, and reconnaissance patterns in SKILL.md. Manual review found these are false positives from Markdown code fences, inline examples, and descriptive text. No executable scripts, network access, filesystem access, prompt injection, or malicious intent were found.
Problemas de riesgo bajo (3)
Versión de auditoría 5
SeguroJan 16, 2026, 03:11 PM
Pure documentation skill containing only API design guidelines. Static scanner produced false positives: 36 'weak cryptographic algorithm' flags are Java 'record' class definitions; 31 'shell backtick execution' flags are markdown code formatting; 5 'system reconnaissance' flags are Spring @PathVariable annotations. No executable code, network access, file system access, or external commands.
Factores de riesgo
⚙️ Comandos externos (31)
Versión de auditoría 4
SeguroJan 16, 2026, 03:11 PM
Pure documentation skill containing only API design guidelines. Static scanner produced false positives: 36 'weak cryptographic algorithm' flags are Java 'record' class definitions; 31 'shell backtick execution' flags are markdown code formatting; 5 'system reconnaissance' flags are Spring @PathVariable annotations. No executable code, network access, file system access, or external commands.
Factores de riesgo
⚙️ Comandos externos (31)
Versión de auditoría 3
SeguroJan 10, 2026, 10:16 AM
Pure prompt-based documentation skill containing only API design guidelines. No executable code, no network access, no file system access, no external commands. This skill provides documentation for Java Spring Boot developers and presents no security risk.
Versión de auditoría 2
SeguroJan 10, 2026, 10:16 AM
Pure prompt-based documentation skill containing only API design guidelines. No executable code, no network access, no file system access, no external commands. This skill provides documentation for Java Spring Boot developers and presents no security risk.
Versión de auditoría 1
SeguroJan 10, 2026, 10:16 AM
Pure prompt-based documentation skill containing only API design guidelines. No executable code, no network access, no file system access, no external commands. This skill provides documentation for Java Spring Boot developers and presents no security risk.