Skills sentrydock Audit History
📦

Audit History

sentrydock - 1 audit

Oct 3, 2026, 01:02 PM

Most static findings are Markdown formatting, documentation links, legitimate credential configuration, or unrelated prose. Installation executes an unpinned installer and globally installs a remote archive without documented integrity verification, creating supply-chain exposure. No evidence found of credential exfiltration, malicious reconnaissance, or prompt injection in the reviewed skill.

1
Files scanned
84
Lines analyzed
6
Review items
0
False positives ignored
Capability review items (3)

These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.

Medium
Ruby/shell backtick execution
Install this skill with `pnpm dlx skills add Humanleap/agent-skills --skill sentrydock`. Connect rem
The documented pnpm dlx command executes the skills package without a version pin, exposing installation to dependency changes. This is supply-chain exposure, not Ruby backtick execution.
Medium
Ruby/shell backtick execution
```bash
The fenced example globally installs a remote package archive without documenting integrity verification or lifecycle-script review. Package installation can execute external code with user privileges.
Low
Hardcoded URL
pnpm add -g https://www.sentrydock.com/downloads/sentrydock-1.1.0.tgz
The URL supplies a package archive directly to a global installation command without a documented hash or signature check. HTTPS alone does not establish package integrity.
Audited by: codex