Habilidades treatment-plans Histórico de Auditoria
📋

Histórico de Auditoria

treatment-plans - 4 auditorias

Versão da auditoria 4

Mais recente Seguro

Jan 17, 2026, 07:42 AM

All 512 static findings are FALSE POSITIVES. This is a legitimate medical treatment plan documentation skill. The static scanner incorrectly triggers on LaTeX package declarations (flagged as 'weak crypto'), medical terminology like 'system' (flagged as 'reconnaissance'), and markdown backticks (flagged as 'shell execution'). No malicious code, network access, credential handling, or exfiltration patterns exist. The skill only generates LaTeX templates and runs local validation scripts.

22
Arquivos analisados
11,608
Linhas analisadas
2
achados
claude
Auditado por
Nenhum problema de segurança encontrado

Versão da auditoria 3

Seguro

Jan 17, 2026, 07:42 AM

All 512 static findings are FALSE POSITIVES. This is a legitimate medical treatment plan documentation skill. The static scanner incorrectly triggers on LaTeX package declarations (flagged as 'weak crypto'), medical terminology like 'system' (flagged as 'reconnaissance'), and markdown backticks (flagged as 'shell execution'). No malicious code, network access, credential handling, or exfiltration patterns exist. The skill only generates LaTeX templates and runs local validation scripts.

22
Arquivos analisados
11,608
Linhas analisadas
2
achados
claude
Auditado por
Nenhum problema de segurança encontrado

Versão da auditoria 2

Seguro

Jan 12, 2026, 04:36 PM

All 499 static findings are FALSE POSITIVES. This is a legitimate medical documentation skill that generates LaTeX treatment plans. Static patterns triggered on medical terminology (assessment, monitoring), LaTeX package declarations, and markdown code fences. No malicious code, network access, credential handling, or exfiltration patterns found.

21
Arquivos analisados
11,287
Linhas analisadas
1
achados
claude
Auditado por
Nenhum problema de segurança encontrado

Versão da auditoria 1

Baixo Risco

Jan 4, 2026, 05:28 PM

Legitimate medical documentation skill. Python scripts perform local file operations only - reading/writing treatment plan templates. No network calls, no credential access, no obfuscation. Scripts check completeness and validate LaTeX content against clinical standards. The only capabilities are local file I/O which is appropriate for template generation tools.

17
Arquivos analisados
6,420
Linhas analisadas
6
achados
claude
Auditado por
Problemas de Baixo Risco (1)
Optional matplotlib dependency for visual timelines
The timeline_generator.py script attempts to import matplotlib for visual timeline generation (lines 15-21). This is an optional dependency handled gracefully with try/except. The optional import could theoretically be used to generate visual output, but the capability is limited to local file-based chart generation. No network or data exfiltration risk.

Fatores de risco

⚡ Contém scripts (4)
📁 Acesso ao sistema de arquivos (3)
🌐 Acesso à rede
Nenhuma localização específica registrada
🔑 Variáveis de ambiente
Nenhuma localização específica registrada
⚙️ Comandos externos
Nenhuma localização específica registrada