История аудитов
datacommons-client - 4 аудиты
Версия аудита 4
Последняя Низкий рискJan 17, 2026, 06:37 AM
This skill is a documentation wrapper for the Data Commons Python client library. All static findings are FALSE POSITIVES: the scanner misinterprets markdown code block delimiters as shell commands, API call examples as network threats, and legitimate documentation patterns as credential exposure. The skill enables read-only access to public statistical data with no code execution capabilities beyond package installation documentation.
Факторы риска
⚙️ Внешние команды (200)
🌐 Доступ к сети (46)
🔑 Переменные окружения (5)
Версия аудита 3
Низкий рискJan 17, 2026, 06:37 AM
This skill is a documentation wrapper for the Data Commons Python client library. All static findings are FALSE POSITIVES: the scanner misinterprets markdown code block delimiters as shell commands, API call examples as network threats, and legitimate documentation patterns as credential exposure. The skill enables read-only access to public statistical data with no code execution capabilities beyond package installation documentation.
Факторы риска
⚙️ Внешние команды (200)
🌐 Доступ к сети (46)
🔑 Переменные окружения (5)
Версия аудита 2
БезопасноJan 12, 2026, 04:04 PM
This is a legitimate Data Commons API wrapper for accessing public statistical data. All 277 static findings are FALSE POSITIVES. The analyzer misinterpreted markdown documentation: backticks are code formatting (not shell commands), fetch calls are legitimate API calls to datacommons.org, and API key examples use placeholder values. No executable code with security implications exists in this documentation-only skill.
Факторы риска
⚙️ Внешние команды (200)
🌐 Доступ к сети (45)
🔑 Переменные окружения (4)
Версия аудита 1
Низкий рискJan 4, 2026, 05:04 PM
Documentation-only skill containing markdown files and JSON configuration. Shows legitimate API usage examples for Data Commons Python client. No executable scripts, obfuscated code, or persistence mechanisms detected.