История аудитов
mmx-cli - 2 аудиты
Версия аудита 2
Последняя Средний рискMay 27, 2026, 08:39 PM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Факторы риска
⚙️ Внешние команды (162)
📁 Доступ к файловой системе (5)
🔑 Переменные окружения (1)
Обнаруженные паттерны
Версия аудита 1
Низкий рискApr 16, 2026, 07:20 AM
The static analyzer reported 202 potential issues, all of which are false positives. SKILL.md is a markdown documentation file for the mmx CLI tool. The scanner misidentified markdown code block backticks as Ruby/shell backtick execution, model version strings as weak cryptographic algorithms, and CLI command examples as system reconnaissance. The skill instructs an AI agent to run the mmx CLI with user-provided parameters, which involves legitimate external command execution, filesystem access for credentials (~/.mmx/), and environment variable usage for API keys. No malicious intent, prompt injection attempts, or data exfiltration patterns were found.