Code analysis
static source read inferred
Static code-analysis findings — hidden prompt content in shipped skill files, committed secrets, dynamic-exec sinks, and suspicious call-home endpoints — across the analyzed catalogue. Heuristic, pure, no code executed; every row deep-links to its source. Click a kind to filter.
50108 analyzed
8067 re-analysis due
988 not analyzable
0 not yet analyzed
4804 source gone
not analyzable
789 too large 199 no source
Running analyzer v33. The scanner changelog explains what each version detects and when it changed.
- hidden prompt 338
- committed secret 6180
- dynamic exec 11839
- obfuscation 3598
- suspicious endpoint 12356
- credential in log 713
- over-broad oauth scope 2550
- suspicious skill script 185
- bundled IDE extension 49
- skill file 187702
- MEDIUM suspicious endpoint nordsym/apiclaw segment.com (telemetry)
{"name": "Segment", "description": "Customer data platform", "category": "Developer Tools", "link": "https://segment.com/docs/api/", "auth": "apiKey", "pricing": "freemium"}, - MEDIUM suspicious endpoint nordsym/apiclaw docs.datadoghq.com (telemetry)
{"name": "Datadog", "description": "Monitoring and security platform", "category": "Developer Tools", "link": "https://docs.datadoghq.com/api/", "auth": "apiKey", "pricing": "paid"}, - MEDIUM suspicious endpoint nordsym/apiclaw docs.sentry.io (telemetry)
{"name": "Sentry", "description": "Error tracking and monitoring", "category": "Developer Tools", "link": "https://docs.sentry.io/api/", "auth": "apiKey", "pricing": "freemium"}, - MEDIUM suspicious endpoint nordsym/apiclaw segment.com (telemetry)
("Segment API", "CDP API", "https://segment.com/docs/connections/sources/catalog/"), - MEDIUM suspicious endpoint nordsym/apiclaw 0x0.st
{"name": "The Null Pointer", "description": "File hosting and URL shortening", "category": "Storage", "authType": "none", "baseUrl": "https://0x0.st"}, - MEDIUM suspicious endpoint nordsym/apiclaw pastebin.com
{"name": "Pastebin", "description": "Plain Text Storage", "category": "Storage", "authType": "apiKey", "baseUrl": "https://pastebin.com/"}, - MEDIUM suspicious endpoint nordsym/apiclaw developer.mixpanel.com (telemetry)
{"name": "MixPanel", "description": "Analytics for mobile and web applications", "category": "Analytics", "authType": "apiKey", "baseUrl": "https://developer.mixpanel.com/"}, - MEDIUM suspicious endpoint nordsym/apiclaw developer.mixpanel.com (telemetry)
{"name": "MixPanel API", "url": "https://developer.mixpanel.com/", "desc": "Product analytics API", "cat": "Analytics"}, - MEDIUM suspicious endpoint nordsym/apiclaw segment.com (telemetry)
tps": True, "cors": "unknown", "link": "https://segment.com/docs/connections/sources/catalog/libraries/server/http-api/", "pricing": "freemium", "keywords": ["analytics", "segment", "cdp"]}, - MEDIUM suspicious endpoint nordsym/apiclaw www.docs.developers.amplitude.com (telemetry)
tps": True, "cors": "unknown", "link": "https://www.docs.developers.amplitude.com/", "pricing": "freemium", "keywords": ["analytics", "amplitude"]}, - MEDIUM suspicious endpoint nordsym/apiclaw developer.mixpanel.com (telemetry)
tps": True, "cors": "unknown", "link": "https://developer.mixpanel.com/reference", "pricing": "freemium", "keywords": ["analytics", "mixpanel"]}, - MEDIUM suspicious endpoint nordsym/apiclaw posthog.com (telemetry)
"https": True, "cors": "yes", "link": "https://posthog.com/docs/api", "pricing": "freemium", "keywords": ["posthog", "analytics", "open-source"]}, - MEDIUM suspicious endpoint nordsym/apiclaw developer.fullstory.com (telemetry)
tps": True, "cors": "unknown", "link": "https://developer.fullstory.com/", "pricing": "paid", "keywords": ["fullstory", "analytics", "sessions"]}, - MEDIUM suspicious endpoint nordsym/apiclaw docs.sentry.io (telemetry)
"https": True, "cors": "yes", "link": "https://docs.sentry.io/api/", "pricing": "freemium", "keywords": ["sentry", "errors", "debugging"]}, - MEDIUM suspicious endpoint nordsym/apiclaw docs.datadoghq.com (telemetry)
tps": True, "cors": "unknown", "link": "https://docs.datadoghq.com/api/", "pricing": "paid", "keywords": ["monitoring", "datadog", "observability"]},