-
Notifications
You must be signed in to change notification settings - Fork 876
Pull requests: NVIDIA/SkillSpector
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
feat(analyzer): detect privileged container execution and escape primitives as PE5
#214
opened Jun 26, 2026 by
CharmingGroot
Contributor
Loading…
feat(analyzer): add phase-1 structured skill summaries
#211
opened Jun 25, 2026 by
rodboev
Loading…
3 of 4 tasks
fix(cli): write concatenated multi-skill report to --output for non-JSON formats
#209
opened Jun 25, 2026 by
rodboev
Loading…
3 of 4 tasks
fix(input): support scp-style SSH Git URLs in host validation
#208
opened Jun 25, 2026 by
rodboev
Loading…
style: apply ruff 0.15.2 formatting to drifted files (unblocks CI format check)
#207
opened Jun 25, 2026 by
wernerkasselman-au
Contributor
Loading…
fix(cli): thread --baseline and --show-suppressed through recursive scans (#201)
#205
opened Jun 24, 2026 by
wernerkasselman-au
Contributor
Loading…
fix(mcp): report llm_available via the chat-model credential resolver (#200)
#204
opened Jun 24, 2026 by
wernerkasselman-au
Contributor
Loading…
feat(ossf-scorecard): add ossf-scorecard github action integration
#198
opened Jun 24, 2026 by
smoy
Contributor
Loading…
fix(provider): honor ANTHROPIC_BASE_URL in native Anthropic provider
#197
opened Jun 24, 2026 by
rodboev
Loading…
3 of 6 tasks
fix(mcp): reject local targets over HTTP transport
#196
opened Jun 24, 2026 by
rodboev
Loading…
3 of 5 tasks
fix: address non-blocking reviewer nits from #178, #179, and #157
#194
opened Jun 24, 2026 by
mimran-khan
Contributor
Loading…
11 tasks done
docs(mcp): document HTTP transport trust model
#193
opened Jun 24, 2026 by
CharmingGroot
Contributor
Loading…
feat(supply_chain): scan tool-specific pyproject.toml dependency tables (Poetry/PDM/Hatch/uv)
#190
opened Jun 24, 2026 by
Shrotriya-lalit
Contributor
Loading…
fix(report): strip ANSI/control bytes from report output (closes #186)
#187
opened Jun 24, 2026 by
assinchu
Contributor
Loading…
feat(behavioral): canonical dangerous-callable resolver + shared evasion corpus (implements #181)
#182
opened Jun 23, 2026 by
zied-jlassi
Contributor
Loading…
fix(behavioral): detect builtins.* and importlib.import_module sink evasions
#180
opened Jun 23, 2026 by
zied-jlassi
Contributor
Loading…
feat: add Ollama, Azure OpenAI, and generic OpenAI-compatible providers
#179
opened Jun 23, 2026 by
mimran-khan
Contributor
Loading…
10 tasks done
3
feat: per-slot model env overrides and model validation
#178
opened Jun 23, 2026 by
mimran-khan
Contributor
Loading…
9 tasks done
2
fix: address non-blocking reviewer nits from #140, #141, #143
#172
opened Jun 23, 2026 by
mimran-khan
Contributor
Loading…
fix(P2): detect Unicode Tag-block "ASCII smuggling" hidden instructions
#167
opened Jun 23, 2026 by
asadbekXodjayev
Loading…
fix(input-handler): bound URL, zip, and git ingest paths
#164
opened Jun 23, 2026 by
rcha0s
Loading…
6 tasks done
Merge updates from upstream and integrate local security report optimizations
#163
opened Jun 23, 2026 by
hbui290
Loading…
feat(analyzer): implement MCP rug-pull detection (RP1-RP3)
#125
opened Jun 20, 2026 by
tcconnally
Contributor
Loading…
fix(scoring): apply 1.3x multiplier only to findings from executable files
#122
opened Jun 20, 2026 by
tcconnally
Contributor
Loading…
Previous Next
ProTip!
Adding no:label will show everything without a label.