Summary
smartbi-cli v1.3.0 was classified as MEDIUM RISK with a risk score of 22.2. Sigil detected 37 findings across 15 files, covering phases including network exfiltration. Review the findings below before installing this package.
Package description: Smartbi BI 业务操作入口:AI 对话分析(大模型问数、智能体、知识库/知识图谱构建与训练、数据解释)、数据查询(MQL/DuckDB 取数、指标统计、字段发现)、数据建模(维度/指标/计算成员/命名集管理)、数据源管理(JDBC连接、Schema 与表同步、元数据刷新)、定时任务与 ETL(计划调度、作业流、因果图)、消息推送(企微/钉钉/飞书/邮件/系统消息)、资源与权限管理(目...
v1.3.0
5 September 2026, 03:40 UTC
by Sigil Bot
Risk Score
22.2
Findings
37
Files Scanned
15
Provenance
Findings by Phase
Phase Ordering
Phases are ordered by criticality, with the most dangerous at the top. Click any phase header to expand or collapse its findings. Critical phases are expanded by default.
Badge
Markdown
[](https://sigilsec.ai/scans/AB7FD55D-2493-4CCC-AA1B-0947F51BA248)HTML
<a href="https://sigilsec.ai/scans/AB7FD55D-2493-4CCC-AA1B-0947F51BA248"><img src="https://sigilsec.ai/badge/clawhub/smartbi-cli" alt="Sigil Scan"></a>Run This Scan Yourself
Scan your own packages
Run Sigil locally to audit any package before it touches your codebase.
Sigil Pro
Cloud scanning, AI investigation, web dashboard, and CI/CD integration. 14-day free trial.
Start free trial →Get threat intelligence and product updates
Security research, new threat signatures, and product updates. No spam.
Other clawhub scans
Believe this result is incorrect? Request a review or see our Terms of Service and Methodology.