🚨

審計歷史

incident-runbook-templates - 4 審計

審計版本 4

最新 安全

Jan 17, 2026, 09:28 AM

Pure documentation skill containing only static markdown templates. No executable code, no file system access, no network calls. All 70 static findings are false positives: markdown code blocks were misidentified as Ruby/shell backticks, example URLs were flagged as hardcoded network addresses, and SQL/YAML content was misidentified as weak cryptographic algorithms. The skill generates text templates only.

2
已掃描檔案
589
分析行數
3
發現項
claude
審計者
未發現安全問題

審計版本 3

安全

Jan 17, 2026, 09:28 AM

Pure documentation skill containing only static markdown templates. No executable code, no file system access, no network calls. All 70 static findings are false positives: markdown code blocks were misidentified as Ruby/shell backticks, example URLs were flagged as hardcoded network addresses, and SQL/YAML content was misidentified as weak cryptographic algorithms. The skill generates text templates only.

2
已掃描檔案
589
分析行數
3
發現項
claude
審計者
未發現安全問題

審計版本 2

低風險

Jan 4, 2026, 04:31 PM

Pure documentation skill with static markdown templates. No executable code, no file access, no network calls. Contains example commands for user reference only. Low risk due to embedded example endpoints that require manual copy-paste to execute.

4
已掃描檔案
633
分析行數
2
發現項
claude
審計者
低風險問題 (1)
Example network requests in templates
The templates include example network calls such as `curl -s "http://prometheus:9090/api/v1/query?query=sum(rate(http_requests_total{status=~'5..'}[5m]))"`. These are not executed by the skill, but could be copied and run against internal services. Users must review and customize endpoints before use.

風險因素

審計版本 1

低風險

Jan 4, 2026, 04:31 PM

Pure documentation skill with static markdown templates. No executable code, no file access, no network calls. Contains example commands for user reference only. Low risk due to embedded example endpoints that require manual copy-paste to execute.

4
已掃描檔案
633
分析行數
2
發現項
claude
審計者
低風險問題 (1)
Example network requests in templates
The templates include example network calls such as `curl -s "http://prometheus:9090/api/v1/query?query=sum(rate(http_requests_total{status=~'5..'}[5m]))"`. These are not executed by the skill, but could be copied and run against internal services. Users must review and customize endpoints before use.

風險因素