Scanned skills

aliyun/alibabacloud-aiops-skills alibabacloud-tech-solution-animation-creation-auto-deploy

Checked the catalogued skill at alibabacloud-tech-solution-animation-creation-auto-deploy.

SkillTrust corpus scan 22 September 2026 v0.10.0 via skillsh Verify on GitHub
D AI-triaged 2
D Security

D; retained sample includes a high finding · SD-007 · what this rule accepts as a false positive →

A Permissions

A set by no findings on this axis

B Transparency

B; retained sample includes a medium finding · SD-007 · what this rule accepts as a false positive →

2 findings
securityhigh SD-007
SKILL.md
transparencymedium SD-007
references/verification-method.md
16 suppressed by AI triage
transparencymedium SD-007 benign_example
references/acceptance-criteria.md

The snippet is part of documentation showing a sample curl request, not an actual outbound call or permission grant.

securityhigh SD-007 benign_example
references/acceptance-criteria.md

The snippet is an instructional example of a wrong curl usage in documentation, not an executable outbound call.

transparencymedium SD-007 benign_example
references/acceptance-criteria.md

The snippet is a documentation example of an incorrect curl invocation, not a real outbound network request.

transparencymedium SD-007 benign_example
references/cli-installation-guide.md

Instruction in documentation, not executed.

permission_hygienehigh SD-003 benign_example
references/cli-installation-guide.md

Absolute path in documentation, no execution.

transparencymedium SD-007 benign_example
references/cli-installation-guide.md

Instruction in documentation, not executed.

permission_hygienehigh SD-003 benign_example
references/cli-installation-guide.md

Absolute path in documentation, no execution.

transparencymedium SD-007 benign_example
references/cli-installation-guide.md

Instruction in documentation, not executed.

permission_hygienehigh SD-003 benign_example
references/cli-installation-guide.md

Absolute path in documentation, no execution.

transparencymedium SD-007 benign_example
references/cli-installation-guide.md

Instruction in documentation, not executed.

permission_hygienehigh SD-003 benign_example
references/cli-installation-guide.md

Absolute path in documentation, no execution.

permission_hygienehigh SD-003 benign_example
references/cli-installation-guide.md

Documentation instruction, no execution.

securityhigh SD-007 benign_example
scripts/create-custom-domain.sh

The outbound call retrieves a token as part of a legitimate domain‑registration process, not data exfiltration.

securitymedium SD-008 benign_example
scripts/create-custom-domain.sh

The base64 string encodes a legitimate Node.js function payload, not malicious obfuscation.

securityhigh SD-007 benign_example
scripts/create-custom-domain.sh

The outbound call registers the domain with devsapp.net, a normal part of the deployment workflow.

securityhigh SD-007 benign_example
scripts/create-custom-domain.sh

The reference to the newly created domain is informational and not a threat.