Code analysis
static source read inferred
Static code-analysis findings — hidden prompt content in shipped skill files, committed secrets, dynamic-exec sinks, and suspicious call-home endpoints — across the analyzed catalogue. Heuristic, pure, no code executed; every row deep-links to its source. Click a kind to filter.
50100 analyzed
8073 re-analysis due
988 not analyzable
2 not yet analyzed
4804 source gone
not analyzable
789 too large 199 no source
Running analyzer v33. The scanner changelog explains what each version detects and when it changed.
- hidden prompt 338
- committed secret 6180
- dynamic exec 11839
- obfuscation 3598
- suspicious endpoint 12356
- credential in log 713
- over-broad oauth scope 2550
- suspicious skill script 185
- bundled IDE extension 49
- skill file 187699
- HIGH dynamic exec Oshawott324/datalox-gated-runtime eval()/exec()
exec(code, module.__dict__) - HIGH dynamic exec mauricemohr88-debug/hermes-local-hands eval()/exec()
exec(doctor._ENDPOINT_PROBE, {}) # noqa: S102 -- fixed internal probe code - HIGH dynamic exec tristanmuzzu/deskwright __import__ sink
assert "DESKWRIGHT_SESSION" not in __import__("os").environ - HIGH dynamic exec tristanmuzzu/deskwright __import__ sink
env = dict(__import__('os').environ) - HIGH dynamic exec tristanmuzzu/deskwright eval()/exec()
exec(compiled, GLOBALS) - HIGH dynamic exec carbaj03/retry-trace new Function()
new Function('require', 'module', 'exports', compiled)( - HIGH dynamic exec carbaj03/retry-trace new Function()
new Function('require', 'module', 'exports', code)( - HIGH dynamic exec Anjor99/naukri-ai-support-agent __import__()
checkpointer=__import__( - MEDIUM suspicious endpoint bell-feed-mcp t.me
"url": f"https://t.me/{channel}/{message_id}", - MEDIUM suspicious endpoint bell-feed-mcp t.me
assert message["url"] == f"https://t.me/{CHANNEL}/{message['message_id']}" - MEDIUM suspicious endpoint bell-feed-mcp t.me
"url": f"https://t.me/{channel}/{message_id}", - MEDIUM suspicious endpoint bell-feed-mcp t.me
BASE_URL = "https://t.me" - MEDIUM suspicious endpoint bell-feed-mcp api.telegram.org
f"https://api.telegram.org/bot{token}/sendMessage", - HIGH committed secret Beamhall/beamhall OpenAI key
sk-pro…(27 chars, redacted) - MEDIUM suspicious endpoint smplkit/mcp 93.184.216.34
"https://93.184.216.34/in", # public IP