📦

Audit History

nestjs-git-commit-pr-message - 1 audit

Oct 4, 2026, 08:49 PM

All 22 static findings are false positives involving Markdown formatting, example prose, provenance metadata, defensive secret checks, or scoped Git inspection. No evidence found of malicious instructions, credential exfiltration, or unauthorized publication intent. The workflow requires authorization for remote writes and treats fetched issue and pull request text as untrusted.

6
Files scanned
481
Lines analyzed
2
Review items
0
False positives ignored
Audited by: codex