📦
Historial de auditorías
ai-visibility-audit - 1 auditoría
Versión de auditoría 1 Más reciente
14 sept 2026, 20:32
All eight static alerts are false positives caused by Markdown code fences or inline code, with no shell or Ruby execution present. The workflow has one medium-risk business concern because it can consume about 660 BotSee credits without an explicit confirmation step.
1
Archivos escaneados
93
Líneas analizadas
2
Elementos de revisión
0
Falsos positivos ignorados
Preocupaciones de seguridad confirmadas (1)
Medio
Paid Analysis Lacks Explicit Confirmation
The workflow directs the agent to run BotSee analysis and notes a cost of about 660 credits, but it does not require approval first.
Lines 44 through 50 explicitly instruct analysis execution and identify the expected credit cost. No confirmation checkpoint appears before this paid action.
Factores de riesgo
⚙️ Comandos externos (8)
Auditado por: codex