Skills mantis-calibrate Audit History
📦

Audit History

mantis-calibrate - 1 audit

Oct 4, 2026, 01:37 PM

All 203 static detections are false positives involving Markdown syntax, workflow metadata, or descriptions of vulnerability evidence. One semantic finding identifies helper reuse without integrity verification, enabling code execution if an attacker controls the workspace helper. No evidence found of deliberate prompt injection or data exfiltration in the supplied files.

2
Files scanned
914
Lines analyzed
3
Review items
0
False positives ignored

Confirmed security concerns (1)

High
Workspace Helper Reuse Without Integrity Verification
The skill executes an existing workspace helper after checking only "# MANTIS_HELPER_VERSION = 2". An attacker controlling that helper can retain the comment and execute arbitrary code with agent permissions.
The instructions explicitly combine helper execution with a first-line version check, without requiring body verification. Exploitation requires attacker control of the workspace helper; no malicious helper is supplied.
Audited by: codex