Historial de auditorías
dnanexus-integration - 4 auditorías
Versión de auditoría 4
Más reciente SeguroJan 17, 2026, 06:49 AM
All 455 static findings are false positives. The skill is documentation for DNAnexus cloud genomics platform. The flagged 'external_commands' are legitimate DNAnexus CLI commands (dx, dxpy) in documentation code blocks. The 'weak cryptographic algorithm' findings incorrectly identified API version fields like 'dxapi: 1.0.0' as cryptographic code. The 'Windows SAM database' alert misidentified authentication documentation (DX_SECURITY_CONTEXT) as Windows system files. No malicious patterns exist.
Factores de riesgo
⚙️ Comandos externos (5)
🌐 Acceso a red (1)
Versión de auditoría 3
SeguroJan 17, 2026, 06:49 AM
All 455 static findings are false positives. The skill is documentation for DNAnexus cloud genomics platform. The flagged 'external_commands' are legitimate DNAnexus CLI commands (dx, dxpy) in documentation code blocks. The 'weak cryptographic algorithm' findings incorrectly identified API version fields like 'dxapi: 1.0.0' as cryptographic code. The 'Windows SAM database' alert misidentified authentication documentation (DX_SECURITY_CONTEXT) as Windows system files. No malicious patterns exist.
Factores de riesgo
⚙️ Comandos externos (5)
🌐 Acceso a red (1)
Versión de auditoría 2
Riesgo medioJan 12, 2026, 04:20 PM
This skill provides documentation for DNAnexus genomics platform integration. The static findings of 'external_commands' are false positives - they represent legitimate DNAnexus CLI commands (dx, dxpy) used for platform interaction, not arbitrary code execution. The 'weak cryptographic algorithm' findings appear to be false positives from documentation examples. The skill is safe for bioinformatics research use.
Factores de riesgo
⚙️ Comandos externos (3)
🌐 Acceso a red (1)
Versión de auditoría 1
SeguroJan 4, 2026, 05:12 PM
Documentation-only skill providing reference material for DNAnexus platform. Contains no executable code, no file access, no network operations. All capabilities are informational - users must install and use the official dxpy SDK separately.