Habilidades incident-runbook-templates Historial de auditorías
🚨

Historial de auditorías

incident-runbook-templates - 4 auditorías

Versión de auditoría 4

Más reciente Seguro

Jan 17, 2026, 09:28 AM

Pure documentation skill containing only static markdown templates. No executable code, no file system access, no network calls. All 70 static findings are false positives: markdown code blocks were misidentified as Ruby/shell backticks, example URLs were flagged as hardcoded network addresses, and SQL/YAML content was misidentified as weak cryptographic algorithms. The skill generates text templates only.

2
Archivos escaneados
589
Líneas analizadas
3
hallazgos
claude
Auditado por
No se encontraron problemas de seguridad

Versión de auditoría 3

Seguro

Jan 17, 2026, 09:28 AM

Pure documentation skill containing only static markdown templates. No executable code, no file system access, no network calls. All 70 static findings are false positives: markdown code blocks were misidentified as Ruby/shell backticks, example URLs were flagged as hardcoded network addresses, and SQL/YAML content was misidentified as weak cryptographic algorithms. The skill generates text templates only.

2
Archivos escaneados
589
Líneas analizadas
3
hallazgos
claude
Auditado por
No se encontraron problemas de seguridad

Versión de auditoría 2

Riesgo bajo

Jan 4, 2026, 04:31 PM

Pure documentation skill with static markdown templates. No executable code, no file access, no network calls. Contains example commands for user reference only. Low risk due to embedded example endpoints that require manual copy-paste to execute.

4
Archivos escaneados
633
Líneas analizadas
2
hallazgos
claude
Auditado por
Problemas de riesgo bajo (1)
Example network requests in templates
The templates include example network calls such as `curl -s "http://prometheus:9090/api/v1/query?query=sum(rate(http_requests_total{status=~'5..'}[5m]))"`. These are not executed by the skill, but could be copied and run against internal services. Users must review and customize endpoints before use.

Factores de riesgo

Versión de auditoría 1

Riesgo bajo

Jan 4, 2026, 04:31 PM

Pure documentation skill with static markdown templates. No executable code, no file access, no network calls. Contains example commands for user reference only. Low risk due to embedded example endpoints that require manual copy-paste to execute.

4
Archivos escaneados
633
Líneas analizadas
2
hallazgos
claude
Auditado por
Problemas de riesgo bajo (1)
Example network requests in templates
The templates include example network calls such as `curl -s "http://prometheus:9090/api/v1/query?query=sum(rate(http_requests_total{status=~'5..'}[5m]))"`. These are not executed by the skill, but could be copied and run against internal services. Users must review and customize endpoints before use.

Factores de riesgo