Habilidades fda-database Histórico de Auditoria
💊

Histórico de Auditoria

fda-database - 4 auditorias

Versão da auditoria 4

Mais recente Seguro

Jan 17, 2026, 07:13 AM

This is a legitimate API wrapper for the FDA's public openFDA API (api.fda.gov). All static findings are false positives: the 'CRITICAL' heuristic flagged code execution + network + credential access as suspicious, but this is standard API client behavior for authenticating with a legitimate government API. MD5 is used for cache key generation, not cryptographic security. Documentation code blocks were misidentified as shell commands. All network requests go to the official FDA API endpoint with no exfiltration or credential theft patterns.

11
Arquivos analisados
4,787
Linhas analisadas
3
achados
claude
Auditado por
Nenhum problema de segurança encontrado

Versão da auditoria 3

Seguro

Jan 17, 2026, 07:13 AM

This is a legitimate API wrapper for the FDA's public openFDA API (api.fda.gov). All static findings are false positives: the 'CRITICAL' heuristic flagged code execution + network + credential access as suspicious, but this is standard API client behavior for authenticating with a legitimate government API. MD5 is used for cache key generation, not cryptographic security. Documentation code blocks were misidentified as shell commands. All network requests go to the official FDA API endpoint with no exfiltration or credential theft patterns.

11
Arquivos analisados
4,787
Linhas analisadas
3
achados
claude
Auditado por
Nenhum problema de segurança encontrado

Versão da auditoria 2

Seguro

Jan 12, 2026, 04:46 PM

The fda-database skill is a legitimate scientific research tool for querying FDA's public openFDA API. Static analysis flagged many false positives - the 'external_commands' are actually markdown code examples showing API usage patterns, not actual command execution. The API key usage is legitimate for accessing public FDA data with proper authentication. No malicious intent detected.

9
Arquivos analisados
4,311
Linhas analisadas
2
achados
claude
Auditado por
Nenhum problema de segurança encontrado

Versão da auditoria 1

Seguro

Jan 4, 2026, 04:22 PM

No credential access, environment harvesting, or exfiltration patterns found. Network calls target the documented openFDA API for expected data retrieval.

9
Arquivos analisados
4,300
Linhas analisadas
1
achados
claude
Auditado por
Nenhum problema de segurança encontrado

Fatores de risco

🌐 Acesso à rede (1)