技能 canvas-design 审计历史
🎨

审计历史

canvas-design - 3 审计

审计版本 3

最新 安全

Jan 16, 2026, 01:12 PM

All 203 static findings are false positives. This is a pure prompt-based skill containing only design instructions and licensed font files. The 'weak cryptographic algorithm', 'C2 keywords', 'system reconnaissance', and 'external commands' detections are triggered by benign text in Open Font License files, Apache license text, and natural language design instructions. No executable code, network operations, or external command execution exists.

30
已扫描文件
3,465
分析行数
3
发现项
claude
审计者
未发现安全问题

风险因素

🌐 网络访问 (51)
canvas-fonts/ArsenalSC-OFL.txt:5 canvas-fonts/BigShoulders-OFL.txt:1 canvas-fonts/BigShoulders-OFL.txt:5 canvas-fonts/Boldonse-OFL.txt:1 canvas-fonts/Boldonse-OFL.txt:5 canvas-fonts/BricolageGrotesque-OFL.txt:1 canvas-fonts/BricolageGrotesque-OFL.txt:5 canvas-fonts/CrimsonPro-OFL.txt:1 canvas-fonts/CrimsonPro-OFL.txt:5 canvas-fonts/DMMono-OFL.txt:1 canvas-fonts/DMMono-OFL.txt:5 canvas-fonts/EricaOne-OFL.txt:6 canvas-fonts/GeistMono-OFL.txt:1 canvas-fonts/GeistMono-OFL.txt:5 canvas-fonts/Gloock-OFL.txt:1 canvas-fonts/Gloock-OFL.txt:5 canvas-fonts/IBMPlexMono-OFL.txt:5 canvas-fonts/InstrumentSans-OFL.txt:1 canvas-fonts/InstrumentSans-OFL.txt:5 canvas-fonts/Italiana-OFL.txt:5 canvas-fonts/JetBrainsMono-OFL.txt:1 canvas-fonts/JetBrainsMono-OFL.txt:5 canvas-fonts/Jura-OFL.txt:1 canvas-fonts/Jura-OFL.txt:5 canvas-fonts/LibreBaskerville-OFL.txt:1 canvas-fonts/LibreBaskerville-OFL.txt:5 canvas-fonts/Lora-OFL.txt:1 canvas-fonts/Lora-OFL.txt:5 canvas-fonts/NationalPark-OFL.txt:1 canvas-fonts/NationalPark-OFL.txt:5 canvas-fonts/NothingYouCouldDo-OFL.txt:5 canvas-fonts/Outfit-OFL.txt:1 canvas-fonts/Outfit-OFL.txt:5 canvas-fonts/PixelifySans-OFL.txt:1 canvas-fonts/PixelifySans-OFL.txt:5 canvas-fonts/PoiretOne-OFL.txt:5 canvas-fonts/RedHatMono-OFL.txt:1 canvas-fonts/RedHatMono-OFL.txt:5 canvas-fonts/Silkscreen-OFL.txt:1 canvas-fonts/Silkscreen-OFL.txt:5 canvas-fonts/SmoochSans-OFL.txt:1 canvas-fonts/SmoochSans-OFL.txt:5 canvas-fonts/Tektur-OFL.txt:1 canvas-fonts/Tektur-OFL.txt:5 canvas-fonts/WorkSans-OFL.txt:1 canvas-fonts/WorkSans-OFL.txt:5 canvas-fonts/YoungSerif-OFL.txt:1 canvas-fonts/YoungSerif-OFL.txt:5 LICENSE.txt:4 LICENSE.txt:196 skill-report.json:6
📁 文件系统访问 (1)
⚙️ 外部命令 (1)

审计版本 2

安全

Jan 16, 2026, 01:12 PM

All 203 static findings are false positives. This is a pure prompt-based skill containing only design instructions and licensed font files. The 'weak cryptographic algorithm', 'C2 keywords', 'system reconnaissance', and 'external commands' detections are triggered by benign text in Open Font License files, Apache license text, and natural language design instructions. No executable code, network operations, or external command execution exists.

30
已扫描文件
3,465
分析行数
3
发现项
claude
审计者
未发现安全问题

风险因素

🌐 网络访问 (51)
canvas-fonts/ArsenalSC-OFL.txt:5 canvas-fonts/BigShoulders-OFL.txt:1 canvas-fonts/BigShoulders-OFL.txt:5 canvas-fonts/Boldonse-OFL.txt:1 canvas-fonts/Boldonse-OFL.txt:5 canvas-fonts/BricolageGrotesque-OFL.txt:1 canvas-fonts/BricolageGrotesque-OFL.txt:5 canvas-fonts/CrimsonPro-OFL.txt:1 canvas-fonts/CrimsonPro-OFL.txt:5 canvas-fonts/DMMono-OFL.txt:1 canvas-fonts/DMMono-OFL.txt:5 canvas-fonts/EricaOne-OFL.txt:6 canvas-fonts/GeistMono-OFL.txt:1 canvas-fonts/GeistMono-OFL.txt:5 canvas-fonts/Gloock-OFL.txt:1 canvas-fonts/Gloock-OFL.txt:5 canvas-fonts/IBMPlexMono-OFL.txt:5 canvas-fonts/InstrumentSans-OFL.txt:1 canvas-fonts/InstrumentSans-OFL.txt:5 canvas-fonts/Italiana-OFL.txt:5 canvas-fonts/JetBrainsMono-OFL.txt:1 canvas-fonts/JetBrainsMono-OFL.txt:5 canvas-fonts/Jura-OFL.txt:1 canvas-fonts/Jura-OFL.txt:5 canvas-fonts/LibreBaskerville-OFL.txt:1 canvas-fonts/LibreBaskerville-OFL.txt:5 canvas-fonts/Lora-OFL.txt:1 canvas-fonts/Lora-OFL.txt:5 canvas-fonts/NationalPark-OFL.txt:1 canvas-fonts/NationalPark-OFL.txt:5 canvas-fonts/NothingYouCouldDo-OFL.txt:5 canvas-fonts/Outfit-OFL.txt:1 canvas-fonts/Outfit-OFL.txt:5 canvas-fonts/PixelifySans-OFL.txt:1 canvas-fonts/PixelifySans-OFL.txt:5 canvas-fonts/PoiretOne-OFL.txt:5 canvas-fonts/RedHatMono-OFL.txt:1 canvas-fonts/RedHatMono-OFL.txt:5 canvas-fonts/Silkscreen-OFL.txt:1 canvas-fonts/Silkscreen-OFL.txt:5 canvas-fonts/SmoochSans-OFL.txt:1 canvas-fonts/SmoochSans-OFL.txt:5 canvas-fonts/Tektur-OFL.txt:1 canvas-fonts/Tektur-OFL.txt:5 canvas-fonts/WorkSans-OFL.txt:1 canvas-fonts/WorkSans-OFL.txt:5 canvas-fonts/YoungSerif-OFL.txt:1 canvas-fonts/YoungSerif-OFL.txt:5 LICENSE.txt:4 LICENSE.txt:196 skill-report.json:6
📁 文件系统访问 (1)
⚙️ 外部命令 (1)

审计版本 1

安全

Jan 10, 2026, 09:21 AM

This is a pure prompt-based skill with no executable code, no network access, no filesystem access beyond its own directory, no environment variable access, and no external command execution. The skill contains only design instructions and licensed font files.

3
已扫描文件
332
分析行数
0
发现项
claude
审计者
未发现安全问题