История аудитов
chatgpt-app-builder - 5 аудиты
Версия аудита 5
Последняя Низкий рискJan 16, 2026, 05:58 PM
This skill is a legitimate documentation and template builder for ChatGPT Apps. The static analyzer flagged 1322 potential issues, but all findings are false positives or benign patterns. The code uses secure crypto (crypto.randomUUID), properly blocks SSRF targets (AWS metadata), and contains only standard development patterns (env vars, fetch calls) documented in reference markdown files.
Факторы риска
📁 Доступ к файловой системе (2)
🌐 Доступ к сети (2)
🔑 Переменные окружения (2)
Версия аудита 4
Низкий рискJan 16, 2026, 05:58 PM
This skill is a legitimate documentation and template builder for ChatGPT Apps. The static analyzer flagged 1322 potential issues, but all findings are false positives or benign patterns. The code uses secure crypto (crypto.randomUUID), properly blocks SSRF targets (AWS metadata), and contains only standard development patterns (env vars, fetch calls) documented in reference markdown files.
Факторы риска
📁 Доступ к файловой системе (2)
🌐 Доступ к сети (2)
🔑 Переменные окружения (2)
Версия аудита 3
Низкий рискJan 10, 2026, 11:08 AM
This is a development framework skill for building ChatGPT Apps. The code includes legitimate MCP server implementation, API client, and React widget. Network and filesystem access are standard for server-side applications. Security patterns are well-documented including XSS prevention, SSRF protection, and rate limiting.
Проблемы низкого риска (3)
Факторы риска
🌐 Доступ к сети (2)
📁 Доступ к файловой системе (1)
🔑 Переменные окружения (2)
⚡ Содержит скрипты (1)
⚙️ Внешние команды (2)
Версия аудита 2
Низкий рискJan 10, 2026, 11:08 AM
This is a development framework skill for building ChatGPT Apps. The code includes legitimate MCP server implementation, API client, and React widget. Network and filesystem access are standard for server-side applications. Security patterns are well-documented including XSS prevention, SSRF protection, and rate limiting.
Проблемы низкого риска (3)
Факторы риска
🌐 Доступ к сети (2)
📁 Доступ к файловой системе (1)
🔑 Переменные окружения (2)
⚡ Содержит скрипты (1)
⚙️ Внешние команды (2)
Версия аудита 1
Низкий рискJan 10, 2026, 11:08 AM
This is a development framework skill for building ChatGPT Apps. The code includes legitimate MCP server implementation, API client, and React widget. Network and filesystem access are standard for server-side applications. Security patterns are well-documented including XSS prevention, SSRF protection, and rate limiting.