Historique des audits
add-endpoint - 6 audits
Version de l’audit 6
Dernier Risque faibleJun 28, 2026, 10:28 AM
Static analysis flagged Markdown backticks, relative import examples, and documentation text as command execution, path traversal, weak crypto, and reconnaissance. Review found only instructional TypeScript examples and endpoint documentation guidance, with no executable skill code, network access, secret handling, or prompt injection attempts.
Problèmes à risque faible (1)
Facteurs de risque
⚙️ Commandes externes (8)
📁 Accès au système de fichiers (4)
Version de l’audit 5
SûrJan 16, 2026, 05:19 PM
This is a documentation-only skill containing a SKILL.md file with guidance for generating API endpoint code. No executable code, no file system access beyond reading its own file, no network calls, and no command execution capabilities. Pure prompt-based skill with zero attack surface. All 38 static findings are false positives caused by the analyzer misinterpreting documentation patterns (code examples as Ruby execution, Zod schemas as crypto, template placeholders as path traversal).
Facteurs de risque
📁 Accès au système de fichiers (1)
⚙️ Commandes externes (20)
Version de l’audit 4
SûrJan 16, 2026, 05:19 PM
This is a documentation-only skill containing a SKILL.md file with guidance for generating API endpoint code. No executable code, no file system access beyond reading its own file, no network calls, and no command execution capabilities. Pure prompt-based skill with zero attack surface. All 38 static findings are false positives caused by the analyzer misinterpreting documentation patterns (code examples as Ruby execution, Zod schemas as crypto, template placeholders as path traversal).
Facteurs de risque
📁 Accès au système de fichiers (1)
⚙️ Commandes externes (20)
Version de l’audit 3
SûrJan 10, 2026, 10:25 AM
This is a documentation-only skill containing a SKILL.md file with guidance for generating API endpoint code. No executable code, no file system access beyond reading its own file, no network calls, and no command execution capabilities. Pure prompt-based skill with zero attack surface.
Version de l’audit 2
SûrJan 10, 2026, 10:25 AM
This is a documentation-only skill containing a SKILL.md file with guidance for generating API endpoint code. No executable code, no file system access beyond reading its own file, no network calls, and no command execution capabilities. Pure prompt-based skill with zero attack surface.
Version de l’audit 1
SûrJan 10, 2026, 10:25 AM
This is a documentation-only skill containing a SKILL.md file with guidance for generating API endpoint code. No executable code, no file system access beyond reading its own file, no network calls, and no command execution capabilities. Pure prompt-based skill with zero attack surface.