監査履歴
labarchive-integration - 4 監査
監査バージョン 4
最新 低リスクJan 17, 2026, 06:08 AM
All 275 static findings are false positives. Scanner triggered on markdown documentation (backtick syntax), security best practices (encrypt keyword), standard file operations (file existence checks), and legitimate API endpoints. Code review confirms no malicious patterns. This is legitimate LabArchives electronic lab notebook API integration.
リスク要因
⚡ スクリプトを含む (3)
🌐 ネットワークアクセス (3)
監査バージョン 3
低リスクJan 17, 2026, 06:08 AM
All 275 static findings are false positives. Scanner triggered on markdown documentation (backtick syntax), security best practices (encrypt keyword), standard file operations (file existence checks), and legitimate API endpoints. Code review confirms no malicious patterns. This is legitimate LabArchives electronic lab notebook API integration.
リスク要因
⚡ スクリプトを含む (3)
🌐 ネットワークアクセス (3)
監査バージョン 2
低リスクJan 12, 2026, 04:38 PM
The static analysis flagged numerous false positives. The 'external_commands' findings are markdown code blocks showing API URL patterns, not actual command execution. The 'weak cryptographic algorithm' findings reference MD5 in documentation examples, not actual implementation. This is a legitimate research tool for LabArchives API integration with no malicious intent detected.
リスク要因
🌐 ネットワークアクセス (3)
📁 ファイルシステムへのアクセス (2)
監査バージョン 1
低リスクJan 4, 2026, 04:43 PM
This is a legitimate LabArchives API integration skill for electronic lab notebooks. Scripts make documented API calls to LabArchives endpoints only. Credentials are stored in config.yaml with restrictive 600 file permissions. No credential harvesting, exfiltration, or unexpected network destinations detected.