Historique des audits
research-grants - 4 audits
Version de l’audit 4
Dernier SûrJan 17, 2026, 06:12 AM
All 306 static findings are false positives. This is a pure documentation skill containing markdown templates and guidelines for research grant writing. The scanner incorrectly flagged: (1) academic terminology as cryptographic algorithms, (2) education acronyms (REU, LSAMP) as Windows SAM database, (3) federal website URLs as hardcoded C2 URLs, (4) markdown code formatting backticks as shell execution. No executable code, network calls, or malicious patterns exist. The skill-report.json correctly identifies risk_level: safe.
Facteurs de risque
🌐 Accès réseau (1)
⚙️ Commandes externes (1)
Version de l’audit 3
SûrJan 17, 2026, 06:12 AM
All 306 static findings are false positives. This is a pure documentation skill containing markdown templates and guidelines for research grant writing. The scanner incorrectly flagged: (1) academic terminology as cryptographic algorithms, (2) education acronyms (REU, LSAMP) as Windows SAM database, (3) federal website URLs as hardcoded C2 URLs, (4) markdown code formatting backticks as shell execution. No executable code, network calls, or malicious patterns exist. The skill-report.json correctly identifies risk_level: safe.
Facteurs de risque
🌐 Accès réseau (1)
⚙️ Commandes externes (1)
Version de l’audit 2
SûrJan 12, 2026, 04:41 PM
This is a legitimate academic skill for research grant writing. All static analysis findings are false positives - the 'weak cryptographic algorithm' flags are from academic content about research methodologies, 'system reconnaissance' mentions are about literature review processes, and 'external command execution' are documentation examples, not actual executable code. No security risks identified.
Facteurs de risque
🌐 Accès réseau (47)
⚙️ Commandes externes (79)
Version de l’audit 1
SûrJan 4, 2026, 04:44 PM
This is a pure documentation skill containing only markdown guidance files, templates, and JSON configuration. No executable code, scripts, or network activity. All references to external URLs are public agency websites (nsf.gov, nih.gov, energy.gov, darpa.mil) for informational purposes only.