Book a 30-minute demo →
Skill scan report

kipris-cli

View on GitHub
20 Low Automated analysis flagged 5 potential risk patterns.

What this skill does

This skill provides access to the KIPRIS Plus OpenAPI for searching Korean patents, trademarks, and designs. It normalizes the API's XML output into JSONL for AI agents, enabling prior-art search, com

github/leoyeai - Configuration Risk - 2.1k stars

ThreatsConfiguration Risk

Threat analysis

Configuration Risk5 findings

Skill info

Nameleoyeai/kipris-cli
Registrygithub
Versione5199b5
PURLpkg:github/LeoYeAI/openclaw-master-skills@e5199b5?skill=kipris-cli
Stars2.1k

Assessments (5)

Configuration Risk5 findings LOW
LOW

Configuration Risk via local-llm-review

bin/applicant.sh

The script uses `urlencode` to encode user input before including it in API requests. If `urlencode` is not properly implemented, it could lead to injection attacks or malformed requests.
LOW

Configuration Risk via local-llm-review

bin/design.sh

The script uses `urlencode` to encode user input before including it in API requests. If `urlencode` is not properly implemented, it could lead to injection attacks or malformed requests.
LOW

Configuration Risk via local-llm-review

bin/patent-detail.sh

The script uses `urlencode` to encode user input before including it in API requests. If `urlencode` is not properly implemented, it could lead to injection attacks or malformed requests.
LOW

Configuration Risk via local-llm-review

bin/patent.sh

The script uses `urlencode` to encode user input before including it in API requests. If `urlencode` is not properly implemented, it could lead to injection attacks or malformed requests.
LOW

Configuration Risk via local-llm-review

bin/trademark.sh

The script uses `urlencode` to encode user input before including it in API requests. If `urlencode` is not properly implemented, it could lead to injection attacks or malformed requests.

Badge

Add the Anomity scan badge for kipris-cli to your README.

Anomity Skill Check badge

Markdown
[![Anomity Skill Check](https://anomity.ai/skills/badge.svg)](https://anomity.ai/skills/github/leoyeai/kipris-cli/)
HTML
<a href="https://anomity.ai/skills/github/leoyeai/kipris-cli/"><img src="https://anomity.ai/skills/badge.svg" alt="Anomity Skill Check"></a>
Image URL
https://anomity.ai/skills/badge.svg

How Anomity governs this at runtime

Scan-time vetting tells you what a skill says it will do. Anomity's Endpoint Sensor sees what agents actually do: it discovers skills alongside every other AI artifact on the endpoint, and runtime governance can allow, deny, or log the tool calls a skill triggers. Policy violations route to your SIEM, Slack, email, or Jira, backed by a queryable 90-day audit trail.

Book a 30-minute demo to see your own skill inventory.

Methodology and disputes

Every skill is assessed by the Anomity Skill Intelligence engine against its public source; findings indicate risk patterns, not confirmed exploitation. Maintainer of kipris-cli? Report an issue or request a rescan.

Ask AI about Anomity
ChatGPT Claude Perplexity Google AI Grok