Audit History
internet-court - 2 audits
Version comparison
Capability and finding changes across audited versions, newest first.
Jul 19, 2026, 10:16 AM
The bundle contains confirmed critical remote installer pipelines, secret-retrieval commands, model-generated eval, plaintext private-key workflows, and silent global plugin installation. Many remaining matches are lexical false positives, but the confirmed supply-chain and credential risks prevent unattended use. Static review was capped at 400/6908 representative findings; omitted static matches are unconfirmed, so automatic publishing stays disabled until manual review.
Confirmed security concerns (28)
Capability review items (52)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (50)
🌐 Network access (50)
📁 Filesystem access (50)
🔑 Env variables (50)
⚡ Contains scripts (14)
Detected Patterns
Jul 10, 2026, 12:15 AM
Internet Court is high risk because it routes wallet custody, delegated authority, payments, escrow, and disputes across many vendored protocol skills. Confirmed issues include pipe-to-shell installers, private-key handling, environment secrets, privileged commands, eval, filesystem access, and network-loaded sub-skills. Manual review is required before publication or automatic installation. Static review was capped at 400/6831 representative findings; omitted static matches are unconfirmed, so automatic publishing stays disabled until manual review.
Confirmed security concerns (39)
Capability review items (118)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.