История аудитов
hypogenic - 6 аудиты
Версия аудита 6
Последняя Низкий рискJan 21, 2026, 05:27 PM
This scientific hypothesis generation skill was scanned with 126 potential issues detected. After evaluation, all findings are false positives: environment variable references for API keys follow security best practices; hardcoded URLs are legitimate documentation links; shell command examples are user setup instructions; no actual cryptographic code or command-and-control patterns exist. The skill makes normal LLM API calls for hypothesis generation, which is expected functionality.
Факторы риска
🌐 Доступ к сети (4)
⚙️ Внешние команды (3)
Версия аудита 5
Средний рискJan 17, 2026, 07:51 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Факторы риска
🔑 Переменные окружения (2)
🌐 Доступ к сети (18)
⚙️ Внешние команды (80)
Обнаруженные паттерны
Версия аудита 4
Средний рискJan 17, 2026, 07:51 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Факторы риска
🔑 Переменные окружения (2)
🌐 Доступ к сети (18)
⚙️ Внешние команды (80)
Обнаруженные паттерны
Версия аудита 3
Средний рискJan 12, 2026, 04:30 PM
The skill contains legitimate research tooling with some security considerations. External command execution is used for academic tools like GROBID PDF processing, not malicious purposes. API key access is standard for LLM integration. The 'C2 keywords' finding appears to be a false positive - the context is academic citations, not command & control infrastructure.
Проблемы среднего риска (1)
Проблемы низкого риска (1)
Факторы риска
🔑 Переменные окружения (1)
⚙️ Внешние команды (2)
🌐 Доступ к сети (2)
Версия аудита 2
Средний рискJan 12, 2026, 04:30 PM
The skill contains legitimate research tooling with some security considerations. External command execution is used for academic tools like GROBID PDF processing, not malicious purposes. API key access is standard for LLM integration. The 'C2 keywords' finding appears to be a false positive - the context is academic citations, not command & control infrastructure.
Проблемы среднего риска (1)
Проблемы низкого риска (1)
Факторы риска
🔑 Переменные окружения (1)
⚙️ Внешние команды (2)
🌐 Доступ к сети (2)
Версия аудита 1
БезопасноJan 4, 2026, 04:39 PM
The skill files are pure documentation and configuration templates. No executable code exists in the skill directory. All described functionality (CLI commands, Python API, Redis caching) refers to an external hypogenic package that users install separately. The skill itself only provides guidance, templates, and usage instructions for Claude to help users work with this external package.