Code analysis
static source read inferred
Static code-analysis findings — hidden prompt content in shipped skill files, committed secrets, dynamic-exec sinks, and suspicious call-home endpoints — across the analyzed catalogue. Heuristic, pure, no code executed; every row deep-links to its source. Click a kind to filter.
51311 analyzed
7406 re-analysis due
996 not analyzable
0 not yet analyzed
4850 source gone
not analyzable
796 too large 200 no source
Running analyzer v33. The scanner changelog explains what each version detects and when it changed.
- hidden prompt 369
- committed secret 6298
- dynamic exec 12011
- obfuscation 3650
- suspicious endpoint 12542
- credential in log 718
- over-broad oauth scope 2556
- suspicious skill script 197
- bundled IDE extension 50
- skill file 190167
- MEDIUM over-broad oauth scope Stuko0/alice-agent https://www.googleapis.com/auth/documents
"https://www.googleapis.com/auth/documents", - MEDIUM over-broad oauth scope Stuko0/alice-agent https://www.googleapis.com/auth/spreadsheets
"https://www.googleapis.com/auth/spreadsheets", - MEDIUM over-broad oauth scope Stuko0/alice-agent https://www.googleapis.com/auth/drive
"https://www.googleapis.com/auth/drive", - MEDIUM over-broad oauth scope Stuko0/alice-agent gmail.modify
"https://www.googleapis.com/auth/gmail.modify", - MEDIUM over-broad oauth scope Stuko0/alice-agent https://www.googleapis.com/auth/documents
"https://www.googleapis.com/auth/documents", - MEDIUM over-broad oauth scope Stuko0/alice-agent https://www.googleapis.com/auth/spreadsheets
"https://www.googleapis.com/auth/spreadsheets", - MEDIUM over-broad oauth scope Stuko0/alice-agent https://www.googleapis.com/auth/drive
"https://www.googleapis.com/auth/drive", - MEDIUM over-broad oauth scope Stuko0/alice-agent gmail.modify
"https://www.googleapis.com/auth/gmail.modify", - HIGH dynamic exec Stuko0/alice-agent eval()/exec()
exec(compile(open(path).read(), str(path), 'exec'), ns) - HIGH dynamic exec Stuko0/alice-agent eval()/exec()
exec(compile(open(_parseltongue_path).read(), str(_parseltongue_path), 'exec'), _caller_globals) - HIGH dynamic exec Stuko0/alice-agent pickle.loads()
outer = pickle.loads(args.snapshot.read_bytes()) # noqa: S301 — gated by --i-trust-this-file - HIGH dynamic exec Stuko0/alice-agent unsafe yaml.load()
doc = yaml.load(fh) - MEDIUM suspicious endpoint Stuko0/alice-agent t.me
"https://t.me/newbot/" - HIGH dynamic exec Stuko0/alice-agent __import__()
__import__(import_name) - HIGH dynamic exec Stuko0/alice-agent __import__()
__import__(module)