Caveat verdict
ksef-accountant-pl
Instruction-only skill providing domain knowledge for Polish KSeF e-invoicing; explicitly declares disableModelInvocation, contains no executable code, and enforces security separation.
⚠ Flagged for review — coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis — not a human review. Caveat flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Findings (4)
Possible hardcoded credential
references/ksef-api-reference.md · code · token="YOUR_TOKEN
Uses eval() — can execute arbitrary code
references/ksef-security-compliance.md · prose · downgraded · eval(
Python os.environ.get — reads environment variable
references/ksef-security-compliance.md · code · os.environ.get(
Uses exec() — may execute shell commands
references/ksef-security-compliance.md · prose · downgraded · exec(
Permissions & capabilities
No declared permissions — minimal attack surface.
Is this flag fair?
Thanks — recorded.