Audit History
brenda-database - 10 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v10 Latest | Jul 23, 2026, 02:33 PM | 1 confirmed | 3 | No capability change |
| v9 | Jul 8, 2026, 01:30 AM | 5 confirmed | 4 | No capability change |
| v8 | Jul 5, 2026, 10:26 AM | No confirmed findings | 3 | No capability change |
| v7 | Jul 5, 2026, 10:26 AM | No confirmed findings | 3 | No capability change |
| v6 | Jun 29, 2026, 10:22 AM | 3 confirmed | 0 | Contains scriptsExternal commands |
| v5 | Jan 17, 2026, 01:09 AM | No confirmed findings | 0 | No capability change |
| v4 | Jan 17, 2026, 01:09 AM | No confirmed findings | 0 | No capability change |
| v3 | Jan 7, 2026, 12:47 AM | No confirmed findings | 0 | No capability change |
| v2 | Jan 7, 2026, 12:47 AM | No confirmed findings | 0 | No capability change |
| v1 | Jan 7, 2026, 12:47 AM | No confirmed findings | 0 | Baseline |
Jul 23, 2026, 02:33 PM
Review confirmed three medium-severity arbitrary file overwrite paths and one medium-severity import-hijacking risk. The other 182 static findings are false positives from EC numbers, Markdown formatting, ordinary imports, credential setup documentation, and official URLs. No prompt injection, credential exfiltration, obfuscated execution, or malicious intent was found.
Confirmed security concerns (1)
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (50)
๐ Env variables (1)
๐ Filesystem access (3)
โก Contains scripts (5)
โ๏ธ External commands (50)
Jul 8, 2026, 01:30 AM
Most static alerts were false positives from EC numbers, Markdown code fences, normal imports, and public documentation URLs. Confirmed issues are limited to BRENDA credential handling through .env guidance and local export or report writes to caller-supplied filenames. No prompt-injection text or hidden malicious intent was found in the scanned files.
Confirmed security concerns (5)
Capability review items (4)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (61)
๐ Env variables (1)
๐ Filesystem access (3)
โก Contains scripts (5)
โ๏ธ External commands (101)
Jul 5, 2026, 10:26 AM
AI review found no prompt injection, exfiltration intent, or obfuscated executable payload. Most alerts are false positives from EC numbers, Markdown fences, documentation, and normal imports. The confirmed issue is local export and report writing to caller-provided filenames.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (61)
๐ Env variables (1)
๐ Filesystem access (3)
โก Contains scripts (5)
โ๏ธ External commands (101)
Jul 5, 2026, 10:26 AM
AI review found no prompt injection, exfiltration intent, or obfuscated executable payload. Most alerts are false positives from EC numbers, Markdown fences, documentation, and normal imports. The confirmed issue is local export and report writing to caller-provided filenames.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (61)
๐ Env variables (1)
๐ Filesystem access (3)
โก Contains scripts (5)
โ๏ธ External commands (101)
Jun 29, 2026, 10:22 AM
AI review did not confirm malicious intent or prompt injection in the reviewed files. Most static findings are false positives from Markdown code fences, EC numbers, chemical formulas, and SHA-256 documentation. The skill still has medium risk because it uses authenticated external BRENDA access, reads credentials from environment-style configuration, and writes user-selected export files.
Confirmed security concerns (3)
Static false positives ignored (4)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
๐ Network access (3)
๐ Env variables (2)
๐ Filesystem access (2)
โก Contains scripts (3)
โ๏ธ External commands (2)
Detected Patterns
Jan 17, 2026, 01:09 AM
Legitimate scientific research tool for accessing the BRENDA enzyme database via SOAP API. All static findings are false positives: markdown documentation backticks flagged as shell execution, EC numbers (enzyme classification) misidentified as IP addresses, SHA-256 password hashing is secure, and biochemistry cofactor names (NAD, NADH) flagged as C2 keywords are legitimate metabolite names. The skill only accesses environment variables for API credentials and makes documented SOAP calls to brenda-enzymes.org.
Risk Factors
๐ Network access (1)
๐ Filesystem access (1)
๐ Env variables (1)
Jan 17, 2026, 01:09 AM
Legitimate scientific research tool for accessing the BRENDA enzyme database via SOAP API. All static findings are false positives: markdown documentation backticks flagged as shell execution, EC numbers (enzyme classification) misidentified as IP addresses, SHA-256 password hashing is secure, and biochemistry cofactor names (NAD, NADH) flagged as C2 keywords are legitimate metabolite names. The skill only accesses environment variables for API credentials and makes documented SOAP calls to brenda-enzymes.org.
Risk Factors
๐ Network access (1)
๐ Filesystem access (1)
๐ Env variables (1)
Jan 7, 2026, 12:47 AM
Legitimate scientific research tool. Makes documented SOAP API calls to brenda-enzymes.org for enzyme data. Accesses environment variables for API credentials only. Standard Python data processing, parsing, visualization, and file export capabilities.
Risk Factors
๐ Network access (1)
๐ Filesystem access (1)
๐ Env variables (1)
Jan 7, 2026, 12:47 AM
Legitimate scientific research tool. Makes documented SOAP API calls to brenda-enzymes.org for enzyme data. Accesses environment variables for API credentials only. Standard Python data processing, parsing, visualization, and file export capabilities.
Risk Factors
๐ Network access (1)
๐ Filesystem access (1)
๐ Env variables (1)
Jan 7, 2026, 12:47 AM
Legitimate scientific research tool. Makes documented SOAP API calls to brenda-enzymes.org for enzyme data. Accesses environment variables for API credentials only. Standard Python data processing, parsing, visualization, and file export capabilities.