Skills biorxiv-database Audit History
🧬

Audit History

biorxiv-database - 4 audits

Audit version 4

Latest Safe

Jan 17, 2026, 05:52 AM

The static analyzer flagged 248 issues, but all are false positives. Markdown documentation backticks were misidentified as shell command execution. The Python script is a straightforward bioRxiv API client that makes legitimate requests to https://api.biorxiv.org, saves results to files, and optionally supports API key authentication. No malicious intent, data exfiltration, or suspicious behavior patterns found.

4
Files scanned
1,425
Lines analyzed
2
findings
claude
Audited by
No security issues found

Risk Factors

🌐 Network access (1)
📁 Filesystem access (1)

Audit version 3

Safe

Jan 17, 2026, 05:52 AM

The static analyzer flagged 248 issues, but all are false positives. Markdown documentation backticks were misidentified as shell command execution. The Python script is a straightforward bioRxiv API client that makes legitimate requests to https://api.biorxiv.org, saves results to files, and optionally supports API key authentication. No malicious intent, data exfiltration, or suspicious behavior patterns found.

4
Files scanned
1,425
Lines analyzed
2
findings
claude
Audited by
No security issues found

Risk Factors

🌐 Network access (1)
📁 Filesystem access (1)

Audit version 2

Safe

Jan 12, 2026, 04:22 PM

The bioRxiv database skill is safe for publication. Static analysis flagged 238 issues, but evaluation shows these are false positives - primarily documentation examples with backticks and legitimate API URLs. The code properly accesses the official bioRxiv API for academic research purposes with appropriate rate limiting.

3
Files scanned
1,210
Lines analyzed
1
findings
claude
Audited by
No security issues found

Risk Factors

🌐 Network access (1)

Audit version 1

Low Risk

Jan 4, 2026, 04:43 PM

This is a legitimate Python tool that queries the bioRxiv API and downloads PDFs. It writes results to user-specified paths but has no access to environment variables, no external command execution, and makes only documented API calls to api.biorxiv.org. Behavior matches the stated research purpose.

6
Files scanned
1,495
Lines analyzed
3
findings
claude
Audited by
No security issues found