Historial de auditorías
ai-native-development - 6 auditorías
Versión de auditoría 6
Más reciente Riesgo medioJun 28, 2026, 10:29 AM
Static analysis reported many high-risk patterns, but most are false positives from Markdown code fences, template strings, API documentation links, and normal SDK environment-variable configuration. No prompt injection attempt, malicious exfiltration, or hidden command execution intent was found. The main residual risk is unsafe copy-paste sample code, especially an eval-based calculator tool and broad autonomous-agent tool templates.
Problemas de riesgo medio (3)
Problemas de riesgo bajo (4)
Factores de riesgo
⚡ Contiene scripts (1)
🌐 Acceso a red (3)
📁 Acceso al sistema de archivos (2)
🔑 Variables de entorno (4)
⚙️ Comandos externos (3)
Patrones detectados
Versión de auditoría 5
Riesgo bajoJan 16, 2026, 04:18 PM
This skill is educational/reference content for AI-native development patterns. Static scanner flagged 401 patterns, but all are FALSE POSITIVES. The flagged patterns (eval, process.env, backticks, grep commands) are legitimate documentation and template code for building AI agents. No malicious intent, data exfiltration, or unauthorized credential access found.
Factores de riesgo
⚙️ Comandos externos (2)
🔑 Variables de entorno (1)
⚡ Contiene scripts (1)
Versión de auditoría 4
Riesgo bajoJan 16, 2026, 04:18 PM
This skill is educational/reference content for AI-native development patterns. Static scanner flagged 401 patterns, but all are FALSE POSITIVES. The flagged patterns (eval, process.env, backticks, grep commands) are legitimate documentation and template code for building AI agents. No malicious intent, data exfiltration, or unauthorized credential access found.
Factores de riesgo
⚙️ Comandos externos (2)
🔑 Variables de entorno (1)
⚡ Contiene scripts (1)
Versión de auditoría 3
SeguroJan 10, 2026, 10:25 AM
This skill is a pure knowledge module containing only documentation and TypeScript code templates for building AI applications. No executable scripts, no network behavior beyond documented API patterns, no filesystem access outside the skill directory, and no suspicious capabilities detected. Safe for marketplace publication.
Problemas de riesgo bajo (1)
Versión de auditoría 2
SeguroJan 10, 2026, 10:25 AM
This skill is a pure knowledge module containing only documentation and TypeScript code templates for building AI applications. No executable scripts, no network behavior beyond documented API patterns, no filesystem access outside the skill directory, and no suspicious capabilities detected. Safe for marketplace publication.
Problemas de riesgo bajo (1)
Versión de auditoría 1
SeguroJan 10, 2026, 10:25 AM
This skill is a pure knowledge module containing only documentation and TypeScript code templates for building AI applications. No executable scripts, no network behavior beyond documented API patterns, no filesystem access outside the skill directory, and no suspicious capabilities detected. Safe for marketplace publication.