🧬

審計歷史

dnanexus-integration - 4 審計

審計版本 4

最新 安全

Jan 17, 2026, 06:49 AM

All 455 static findings are false positives. The skill is documentation for DNAnexus cloud genomics platform. The flagged 'external_commands' are legitimate DNAnexus CLI commands (dx, dxpy) in documentation code blocks. The 'weak cryptographic algorithm' findings incorrectly identified API version fields like 'dxapi: 1.0.0' as cryptographic code. The 'Windows SAM database' alert misidentified authentication documentation (DX_SECURITY_CONTEXT) as Windows system files. No malicious patterns exist.

7
已掃描檔案
2,858
分析行數
2
發現項
claude
審計者
未發現安全問題

審計版本 3

安全

Jan 17, 2026, 06:49 AM

All 455 static findings are false positives. The skill is documentation for DNAnexus cloud genomics platform. The flagged 'external_commands' are legitimate DNAnexus CLI commands (dx, dxpy) in documentation code blocks. The 'weak cryptographic algorithm' findings incorrectly identified API version fields like 'dxapi: 1.0.0' as cryptographic code. The 'Windows SAM database' alert misidentified authentication documentation (DX_SECURITY_CONTEXT) as Windows system files. No malicious patterns exist.

7
已掃描檔案
2,858
分析行數
2
發現項
claude
審計者
未發現安全問題

審計版本 2

中風險

Jan 12, 2026, 04:20 PM

This skill provides documentation for DNAnexus genomics platform integration. The static findings of 'external_commands' are false positives - they represent legitimate DNAnexus CLI commands (dx, dxpy) used for platform interaction, not arbitrary code execution. The 'weak cryptographic algorithm' findings appear to be false positives from documentation examples. The skill is safe for bioinformatics research use.

6
已掃描檔案
2,616
分析行數
2
發現項
claude
審計者
未發現安全問題

審計版本 1

安全

Jan 4, 2026, 05:12 PM

Documentation-only skill providing reference material for DNAnexus platform. Contains no executable code, no file access, no network operations. All capabilities are informational - users must install and use the official dxpy SDK separately.

8
已掃描檔案
1,465
分析行數
0
發現項
claude
審計者
未發現安全問題