KLD SDD OpenSpec 项目初始化工具 - 一键部署 SDD skills
Static analysis completed at 97.0% confidence. No malicious behavior was detected; 16 low-signal pattern(s) were surfaced and cleared.
Package source references dynamic require/import behavior.
bin/kld-sdd-init.jsView on unpkg · L13Package source references weak cryptographic algorithms.
skywalk-sdd/ontology/id.cjsView on unpkg · L1Manifest-trigger-reachable source writes behavior-bearing configuration into a user or project AI-agent control surface.
lib/init.jsView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
lib/init.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skywalk-sdd/lib/shared.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skywalk-sdd/ontology/sdd-config.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skywalk-sdd/lib/git-identity.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
templates/skills/kld-sdd/opsx-knowledge/scripts/retrieve.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skywalk-sdd/openspec-shim.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
lib/skills-bundle.jsView on unpkgThis report applies to kld-sdd@2.7.3.
See version security history for other recorded verdicts.
Evidence last updated: .
Package source references dynamic require/import behavior.
bin/kld-sdd-init.jsView on unpkg · L13Package source references weak cryptographic algorithms.
skywalk-sdd/ontology/id.cjsView on unpkg · L1Manifest-trigger-reachable source writes behavior-bearing configuration into a user or project AI-agent control surface.
lib/init.jsView on unpkgThis package version adds a dangerous source file absent from the previous stored version; route for source-aware review.
lib/init.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skywalk-sdd/lib/shared.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skywalk-sdd/ontology/sdd-config.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skywalk-sdd/lib/git-identity.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
templates/skills/kld-sdd/opsx-knowledge/scripts/retrieve.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skywalk-sdd/openspec-shim.cjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
lib/skills-bundle.jsView on unpkg