🚨

監査履歴

incident-runbook-templates - 4 監査

監査バージョン 4

最新 安全

Jan 17, 2026, 09:28 AM

Pure documentation skill containing only static markdown templates. No executable code, no file system access, no network calls. All 70 static findings are false positives: markdown code blocks were misidentified as Ruby/shell backticks, example URLs were flagged as hardcoded network addresses, and SQL/YAML content was misidentified as weak cryptographic algorithms. The skill generates text templates only.

2
スキャンされたファイル
589
解析された行数
3
検出結果
claude
監査者
セキュリティ問題は見つかりませんでした

監査バージョン 3

安全

Jan 17, 2026, 09:28 AM

Pure documentation skill containing only static markdown templates. No executable code, no file system access, no network calls. All 70 static findings are false positives: markdown code blocks were misidentified as Ruby/shell backticks, example URLs were flagged as hardcoded network addresses, and SQL/YAML content was misidentified as weak cryptographic algorithms. The skill generates text templates only.

2
スキャンされたファイル
589
解析された行数
3
検出結果
claude
監査者
セキュリティ問題は見つかりませんでした

監査バージョン 2

低リスク

Jan 4, 2026, 04:31 PM

Pure documentation skill with static markdown templates. No executable code, no file access, no network calls. Contains example commands for user reference only. Low risk due to embedded example endpoints that require manual copy-paste to execute.

4
スキャンされたファイル
633
解析された行数
2
検出結果
claude
監査者
低リスクの問題 (1)
Example network requests in templates
The templates include example network calls such as `curl -s "http://prometheus:9090/api/v1/query?query=sum(rate(http_requests_total{status=~'5..'}[5m]))"`. These are not executed by the skill, but could be copied and run against internal services. Users must review and customize endpoints before use.

リスク要因

🌐 ネットワークアクセス (2)

監査バージョン 1

低リスク

Jan 4, 2026, 04:31 PM

Pure documentation skill with static markdown templates. No executable code, no file access, no network calls. Contains example commands for user reference only. Low risk due to embedded example endpoints that require manual copy-paste to execute.

4
スキャンされたファイル
633
解析された行数
2
検出結果
claude
監査者
低リスクの問題 (1)
Example network requests in templates
The templates include example network calls such as `curl -s "http://prometheus:9090/api/v1/query?query=sum(rate(http_requests_total{status=~'5..'}[5m]))"`. These are not executed by the skill, but could be copied and run against internal services. Users must review and customize endpoints before use.

リスク要因

🌐 ネットワークアクセス (2)