ghost-scan-code

Fail

Audited by Runlayer on Mar 12, 2026

Risk Level: HIGH
Scan Summary
Max Score
93%
Files
12
Flagged
8
Chunks
23
Flagged Files (8)
ghost-scan-code/SKILL.mdHIGH
93.2%

Privilege Escalation

Resource Abuse

Shadow Persistence

ghost-scan-code/criteria/mobile.yamlMEDIUM
79.0%

Malicious tool definition detected

Description: # Mobile vulnerability validation criteria # Each entry defines what must be true/present/valid for a finding to be worth surfacing # Format: agent > vector > {candidates, cwe, severity, criteria} insecure_data_storage: unencrypted-local: candidates: "File I/O operations (FileOutputStream, writeToFile, File.WriteAllBytes), sensitive data written to files, unencrypted file storage, document directory file writes" cwe: "CWE-312" severity: high: "Credentials, tokens, or financial data

ghost-scan-code/criteria/backend.yamlMEDIUM
77.4%

Tool passed security scan

Data Exfiltration

Context Poisoning

Resource Abuse

ghost-scan-code/criteria/library.yamlMEDIUM
76.7%

Tool passed security scan

Supply Chain Compromise

ghost-scan-code/prompts/analyzer.mdMEDIUM
75.8%

Destructive Action

Context Poisoning

ghost-scan-code/prompts/verifier.mdLOW
67.8%

Tool passed security scan

ghost-scan-code/prompts/nominator.mdLOW
66.3%

Tool passed security scan

ghost-scan-code/criteria/frontend.yamlLOW
54.7%

Tool passed security scan

Passed Files (4)Click to expand
ghost-scan-code/scripts/loop.shOK
48.1%

Tool passed security scan

ghost-scan-code/prompts/planner.mdOK
42.4%

Tool passed security scan

ghost-scan-code/criteria/index.yamlOK
20.1%

Tool passed security scan

ghost-scan-code/prompts/template-finding.mdOK
7.0%

Tool passed security scan

Audit Metadata
Max File Score
93%
Classification
KNOWN_SERVER_PARTIAL_KNOWN
Files Scanned
12
Files Flagged
8
Chunks Analyzed
23
Analyzed
Mar 12, 2026, 03:48 AM
Security Audit — runlayer — ghost-scan-code