Puter — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Puter (Agent Skill) and scored it 45/100 (orange). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 1 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 1 flagged
A base64 string of 128+ characters appears in a documentation file. Encoded prompt injection hides the hostile instruction in base64 — invisible to keyword filters — and relies on the agent's ability to decode it at runtime. There is no normal authoring reason to embed a multi-hundred-byte base64 blob in skill docs.
*.sig, SIGNATURES) outside the documentation.Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
<h3 align="center"><img width="80" alt="Puter.com, The Personal Cloud Computer: All your files, apps, and games in one place accessible from anywhere at any time." src="https://assets.puter.site/puter-logo.png"></h3>
<h3 align="center">The Open-Source Internet Computer!</h3>
<p align="center"> <a href="https://puter.com/?ref=github.com"><strong>« LIVE DEMO »</strong></a> <br /> <br /> <a href="https://puter.com/?ref=github.com">Puter.com</a> · <a href="https://apps.puter.com/">App Store</a> · <a href="https://developer.puter.com" target="_blank">Developers</a> · <a href="https://discord.com/invite/PQcx7Teh8u">Discord</a> · <a href="https://reddit.com/r/puter">Reddit</a> · <a href="https://twitter.com/HeyPuter">X</a> </p>
<h3 align="center"><img width="800" style="border-radius:5px;" alt="screenshot" src="https://assets.puter.site/puter.com-screenshot.webp"></h3>
<br/>
Puter is an advanced, open-source, self-hostable internet computer designed to be feature-rich, fast, and highly extensible.
Puter's goal is to provide you with every app and feature you need to work, create, and play under one roof. From a simple Notepad and Voice Recorder to Spreadsheet and Camera, Puter wants to be the all-in-one solution for your digital life.
Puter provides everything you need to build and publish web apps and games. From AI to Cloud Storage and Database to Serverless Workers, Puter has you covered. Puter also helps you get users! Once you build your app, you can publish it on our App Store to reach and monetize users.
<br/>
git clone https://github.com/HeyPuter/puter
cd puter
npm install
npm start→ This should launch Puter at http://puter.localhost:4100
<br/>
#### Linux/macOS
curl -fsSL https://puter.com/selfhost | sh#### Windows
irm https://puter.com/selfhost?os=windows | iex→ For more details, see Self-Hosting Puter.
<br/>
Puter is available as a hosted service at puter.com.
<br/>
Connect with the maintainers and community through these channels:
We are always happy to help you with any questions you may have. Don't hesitate to ask!
<br/>
This repository, including all its contents, sub-projects, modules, and components, is licensed under AGPL-3.0 unless explicitly stated otherwise. Third-party libraries included in this repository may be subject to their own licenses.
<br/>
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.