Historique des audits
generate-sparkle-appcast - 5 audits
Version de l’audit 5
Dernier Risque faibleJan 16, 2026, 07:41 PM
Legitimate macOS release automation tool for generating Sparkle appcast files. All static findings are false positives stemming from the scanner's inability to distinguish between legitimate release tooling and malicious patterns. The script operates only within project build/docs directories, uses standard tooling (git, python3, openssl) for release signing, and handles Ed25519 private keys appropriately for Sparkle update signing.
Facteurs de risque
⚡ Contient des scripts (1)
⚙️ Commandes externes (3)
📁 Accès au système de fichiers (3)
🌐 Accès réseau (2)
🔑 Variables d’environnement (2)
Version de l’audit 4
Risque faibleJan 16, 2026, 07:41 PM
Legitimate macOS release automation tool for generating Sparkle appcast files. All static findings are false positives stemming from the scanner's inability to distinguish between legitimate release tooling and malicious patterns. The script operates only within project build/docs directories, uses standard tooling (git, python3, openssl) for release signing, and handles Ed25519 private keys appropriately for Sparkle update signing.
Facteurs de risque
⚡ Contient des scripts (1)
⚙️ Commandes externes (3)
📁 Accès au système de fichiers (3)
🌐 Accès réseau (2)
🔑 Variables d’environnement (2)
Version de l’audit 3
Risque faibleJan 10, 2026, 11:56 AM
Standard release automation script for generating Sparkle appcast files. Operates only within project build/docs directories. Uses python3, openssl, and git commands appropriate for release signing and git history processing.
Facteurs de risque
⚡ Contient des scripts (1)
⚙️ Commandes externes (2)
📁 Accès au système de fichiers (2)
🔑 Variables d’environnement (1)
Version de l’audit 2
Risque faibleJan 10, 2026, 11:56 AM
Standard release automation script for generating Sparkle appcast files. Operates only within project build/docs directories. Uses python3, openssl, and git commands appropriate for release signing and git history processing.
Facteurs de risque
⚡ Contient des scripts (1)
⚙️ Commandes externes (2)
📁 Accès au système de fichiers (2)
🔑 Variables d’environnement (1)
Version de l’audit 1
Risque faibleJan 10, 2026, 11:56 AM
Standard release automation script for generating Sparkle appcast files. Operates only within project build/docs directories. Uses python3, openssl, and git commands appropriate for release signing and git history processing.