Code analysis
static source read inferred
Static code-analysis findings — hidden prompt content in shipped skill files, committed secrets, dynamic-exec sinks, and suspicious call-home endpoints — across the analyzed catalogue. Heuristic, pure, no code executed; every row deep-links to its source. Click a kind to filter.
51311 analyzed
7406 re-analysis due
996 not analyzable
0 not yet analyzed
4850 source gone
not analyzable
796 too large 200 no source
Running analyzer v33. The scanner changelog explains what each version detects and when it changed.
- hidden prompt 369
- committed secret 6298
- dynamic exec 12011
- obfuscation 3650
- suspicious endpoint 12542
- credential in log 718
- over-broad oauth scope 2556
- suspicious skill script 197
- bundled IDE extension 50
- skill file 190167
- MEDIUM suspicious endpoint Jwuthri/Tracely 8.8.8.8
("PUT", "/api/agents/planner/endpoint", {"url": "https://8.8.8.8/chat"}), - MEDIUM suspicious endpoint Jwuthri/Tracely 169.254.169.254 (cloud metadata)
out, err, _ = engine._step_webhook({"url": "http://169.254.169.254/"}, _ctx()) - MEDIUM suspicious endpoint amazon-india-seller-mcp 169.254.169.254 (cloud metadata)
"http://169.254.169.254/latest/meta-data/", # AWS instance metadata - HIGH committed secret chase-irql/ai-workstation OpenAI key
sk-d31…(43 chars, redacted) - MEDIUM suspicious endpoint Dempty-glitch/Z-Zero-mcp 169.254.169.254 (cloud metadata)
assert.throws(() => new UcpMcpClient("https://169.254.169.254/mcp"), /SSRF/); - HIGH committed secret Mojtaba-Dehghani/Enterprise-Multi-Agent-Engine OpenAI key
sk-y6H…(25 chars, redacted) - HIGH dynamic exec mcp-scribe unsafe yaml.load()
else yaml.load(text, Loader=_YamlLoader) - MEDIUM suspicious endpoint reaatech/tool-use-firewall discord.com
vi.stubEnv('DISCORD_WEBHOOK', 'https://discord.com/api/webhooks/test'); - HIGH dynamic exec hasil7677/finLM __import__()
versions[mod] = __import__(mod).__version__ - MEDIUM suspicious endpoint reaatech/mcp-server-doctor 1.2.3.4
expect(isPrivateURL('https://1.2.3.4')).toBe(false); - MEDIUM suspicious endpoint reaatech/mcp-server-doctor 172.100.0.1
expect(isPrivateURL('http://172.100.0.1')).toBe(false); - MEDIUM suspicious endpoint reaatech/mcp-server-doctor 172.32.0.1
expect(isPrivateURL('http://172.32.0.1')).toBe(false); - MEDIUM suspicious endpoint reaatech/mcp-server-doctor 172.0.0.1
expect(isPrivateURL('http://172.0.0.1')).toBe(false); - MEDIUM suspicious endpoint reaatech/mcp-server-doctor 172.15.0.1
expect(isPrivateURL('http://172.15.0.1')).toBe(false); - HIGH obfuscation reaatech/mcp-changelog dynamic require()/import()
const module = await import(`${pathToFileURL(absolutePath).href}?t=${Date.now()}`);