🧬

審計歷史

biorxiv-database - 4 審計

審計版本 4

最新 安全

Jan 17, 2026, 05:52 AM

The static analyzer flagged 248 issues, but all are false positives. Markdown documentation backticks were misidentified as shell command execution. The Python script is a straightforward bioRxiv API client that makes legitimate requests to https://api.biorxiv.org, saves results to files, and optionally supports API key authentication. No malicious intent, data exfiltration, or suspicious behavior patterns found.

4
已掃描檔案
1,425
分析行數
2
發現項
claude
審計者
未發現安全問題

風險因素

🌐 網路存取 (1)
📁 檔案系統存取 (1)

審計版本 3

安全

Jan 17, 2026, 05:52 AM

The static analyzer flagged 248 issues, but all are false positives. Markdown documentation backticks were misidentified as shell command execution. The Python script is a straightforward bioRxiv API client that makes legitimate requests to https://api.biorxiv.org, saves results to files, and optionally supports API key authentication. No malicious intent, data exfiltration, or suspicious behavior patterns found.

4
已掃描檔案
1,425
分析行數
2
發現項
claude
審計者
未發現安全問題

風險因素

🌐 網路存取 (1)
📁 檔案系統存取 (1)

審計版本 2

安全

Jan 12, 2026, 04:22 PM

The bioRxiv database skill is safe for publication. Static analysis flagged 238 issues, but evaluation shows these are false positives - primarily documentation examples with backticks and legitimate API URLs. The code properly accesses the official bioRxiv API for academic research purposes with appropriate rate limiting.

3
已掃描檔案
1,210
分析行數
1
發現項
claude
審計者
未發現安全問題

風險因素

🌐 網路存取 (1)

審計版本 1

低風險

Jan 4, 2026, 04:43 PM

This is a legitimate Python tool that queries the bioRxiv API and downloads PDFs. It writes results to user-specified paths but has no access to environment variables, no external command execution, and makes only documented API calls to api.biorxiv.org. Behavior matches the stated research purpose.

6
已掃描檔案
1,495
分析行數
3
發現項
claude
審計者
未發現安全問題