unisound-diagnosis-sufficiency-review
PassAudited by VirusTotal on May 15, 2026.
Findings (1)
The skill bundle is classified as suspicious due to the presence of hardcoded internal network infrastructure details (IP `10.10.20.15`, port `15432`) and database credentials in `scripts/diagnosis_sufficiency_review.py`. While the code's logic appears consistent with its stated purpose of medical diagnosis review using an external LLM API (`maas-api.hivoice.cn`), the inclusion of internal database targets is a high-risk configuration that could be used for unauthorized internal network access. No explicit evidence of intentional data exfiltration or backdoors was found, but the hardcoded environment-specific details and the processing of sensitive medical records warrant caution.
