Habilidades research-lookup Historial de auditorías
🔬

Historial de auditorías

research-lookup - 4 auditorías

Versión de auditoría 4

Más reciente Riesgo bajo

Jan 17, 2026, 06:22 AM

This is a legitimate academic research tool that makes API calls to OpenRouter for literature searches. All 146 static findings are false positives: (1) API key environment reads are standard authentication for OPENROUTER_API_KEY, (2) network calls target the legitimate OpenRouter API endpoint, (3) 'external commands' flagged in SKILL.md are documentation examples showing command syntax, not runtime code execution, and (4) 'weak cryptographic algorithm' mentions are ML architecture names (transformer, RNN) misidentified as cryptographic algorithms. No malicious patterns detected after intent analysis.

6
Archivos escaneados
2,314
Líneas analizadas
4
hallazgos
claude
Auditado por
No se encontraron problemas de seguridad

Versión de auditoría 3

Riesgo bajo

Jan 17, 2026, 06:22 AM

This is a legitimate academic research tool that makes API calls to OpenRouter for literature searches. All 146 static findings are false positives: (1) API key environment reads are standard authentication for OPENROUTER_API_KEY, (2) network calls target the legitimate OpenRouter API endpoint, (3) 'external commands' flagged in SKILL.md are documentation examples showing command syntax, not runtime code execution, and (4) 'weak cryptographic algorithm' mentions are ML architecture names (transformer, RNN) misidentified as cryptographic algorithms. No malicious patterns detected after intent analysis.

6
Archivos escaneados
2,314
Líneas analizadas
4
hallazgos
claude
Auditado por
No se encontraron problemas de seguridad

Versión de auditoría 2

Seguro

Jan 12, 2026, 04:44 PM

This is a legitimate academic research tool that makes API calls to OpenRouter for literature searches. The static scanner flagged 127 potential issues, but all are false positives: (1) API key environment reads are standard authentication, (2) network calls target the legitimate OpenRouter API, (3) 'external commands' flagged in SKILL.md are documentation examples, not code, and (4) 'weak cryptographic algorithm' mentions are ML architecture names (transformer, RNN) misidentified as crypto. No malicious patterns detected.

4
Archivos escaneados
1,346
Líneas analizadas
4
hallazgos
claude
Auditado por
No se encontraron problemas de seguridad

Factores de riesgo

🔑 Variables de entorno (27)
🌐 Acceso a red (10)
📁 Acceso al sistema de archivos (1)
⚙️ Comandos externos (64)

Versión de auditoría 1

Riesgo bajo

Jan 5, 2026, 04:14 PM

Legitimate research lookup skill. Makes API calls to OpenRouter for Perplexity Sonar models. Reads OPENROUTER_API_KEY for authentication. No suspicious patterns detected.

6
Archivos escaneados
1,226
Líneas analizadas
2
hallazgos
claude
Auditado por
No se encontraron problemas de seguridad