Historique des audits
esm - 5 audits
Version de l’audit 5
Dernier SûrJan 21, 2026, 05:24 PM
All 368 static findings are false positives. The scanner incorrectly flagged markdown documentation patterns. The skill provides documentation for legitimate protein language models from EvolutionaryScale. All code examples are standard scientific workflows for protein engineering. Python f-strings with underscores (protein masks), MD5 for cache keys, and ML terminology were misclassified as security issues.
Facteurs de risque
⚡ Contient des scripts (5)
🌐 Accès réseau (21)
⚙️ Commandes externes (188)
📁 Accès au système de fichiers (13)
Version de l’audit 4
Risque moyenJan 17, 2026, 07:02 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Facteurs de risque
⚡ Contient des scripts (4)
🌐 Accès réseau (22)
⚙️ Commandes externes (188)
📁 Accès au système de fichiers (13)
Motifs détectés
Version de l’audit 3
Risque moyenJan 17, 2026, 07:02 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Facteurs de risque
⚡ Contient des scripts (4)
🌐 Accès réseau (22)
⚙️ Commandes externes (188)
📁 Accès au système de fichiers (13)
Motifs détectés
Version de l’audit 2
Risque faibleJan 12, 2026, 04:38 PM
All 319 static findings are FALSE POSITIVES. The scanner misidentified markdown code formatting (backticks) as shell commands, HTTPS URLs as weak crypto, PyTorch's model.eval() as dynamic code execution, and standard file I/O as system reconnaissance. This is legitimate scientific documentation for a protein language model library.
Facteurs de risque
🌐 Accès réseau (1)
📁 Accès au système de fichiers (1)
Version de l’audit 1
SûrJan 4, 2026, 04:19 PM
This is a pure documentation skill containing only markdown files with API references and code examples for protein modeling. No executable code, scripts, file system access, or network calls are present in the skill itself. The network references in documentation describe how to use the Forge API, but the skill does not make network requests.