Code analysis
static source read inferred
Static code-analysis findings — hidden prompt content in shipped skill files, committed secrets, dynamic-exec sinks, and suspicious call-home endpoints — across the analyzed catalogue. Heuristic, pure, no code executed; every row deep-links to its source. Click a kind to filter.
50064 analyzed
8099 re-analysis due
988 not analyzable
0 not yet analyzed
4803 source gone
not analyzable
789 too large 199 no source
Running analyzer v33. The scanner changelog explains what each version detects and when it changed.
- hidden prompt 338
- committed secret 6178
- dynamic exec 11834
- obfuscation 3579
- suspicious endpoint 12346
- credential in log 713
- over-broad oauth scope 2550
- suspicious skill script 185
- bundled IDE extension 49
- skill file 187628
- MEDIUM suspicious endpoint winsznx/remlo t.me
contact_url: 'https://t.me/remlo_xyz', - HIGH committed secret hawonb711-tech/nexus GitHub token
ghp_A1…(40 chars, redacted) - HIGH dynamic exec hawonb711-tech/nexus eval()
eval(userInput); - HIGH committed secret hawonb711-tech/nexus GitHub token
ghp_A1…(40 chars, redacted) - HIGH dynamic exec hawonb711-tech/nexus eval()
const result = eval(query); - HIGH committed secret volcengine/onesdk OpenAI key
sk-2ed…(51 chars, redacted) - HIGH committed secret volcengine/onesdk OpenAI key
sk-ca0…(51 chars, redacted) - HIGH dynamic exec pablosaez21/cerno unsafe yaml.load()
document = yaml.load( - HIGH dynamic exec stdevMac/grok-in-codex new Function()
const embedded = new Function(`${helperSrc}; return formatStreamProgressMessage;`)(); - MEDIUM suspicious endpoint danielkempe/market-file eu.posthog.com (telemetry)
host: 'https://eu.posthog.com', - HIGH committed secret hretheum/skillforge GitHub token
ghp_01…(40 chars, redacted) - HIGH committed secret okedeji/mcpvessel Stripe live key
sk_liv…(28 chars, redacted) - HIGH dynamic exec DXBMARK/m32-bridge __import__ sink
completed = __import__("subprocess").run( - MEDIUM suspicious endpoint nikolaymokh-dev/vk-ads-mcp 169.254.169.254 (cloud metadata)
assert_url_allowed("http://169.254.169.254/latest/meta-data/") - MEDIUM suspicious endpoint GalaxyRuler/memory-fort 8.8.8.8
"https://8.8.8.8/v1",