{
  "artifact": "AxiomGate Open Security Teardown #02 — raw automated findings",
  "generated_utc": "2026-09-18T14:30:00Z",
  "upstream": {
    "repository": "https://github.com/browser-use/browser-use",
    "commit": "6e1977daa0f67c9de0bc0e16aaec8b5833eeb8e0",
    "identity_type": "git commit — content-binding: it names exactly these bytes"
  },
  "analyzer": {
    "identity_type": "AxiomGate repository commit",
    "commit": "86f40081bfb6a4a5eefafd10a74672ca73eae7ef",
    "note": "This is a commit in the AxiomGate source repository. It is NOT a published axiomgate-lint release version, and no equivalence between the two has been established. Rule-level versions are carried per finding below.",
    "rule_versions": [
      "v1"
    ]
  },
  "scan": {
    "scan_status": "completed",
    "tree_sha": "419ab9358e627eae",
    "tree_sha_note": "tree_sha is a scan-scope and tree-shape identifier. It is NOT a cryptographic content hash and it is not collision-resistant: AxiomGate's own verification script demonstrates a collision between differing trees of equal file sizes. Use the upstream git commit above to bind content.",
    "method": "automated static AST analysis; the subject was never executed",
    "configuration": {
      "max_python_file_bytes": 300000,
      "note": "The analyzer's default per-file bound is 81920 bytes. At that default this repository does not scan at all: the syntax preflight fails closed on a file exceeding the bound and returns no partial result. The bound was raised explicitly for this published scan, and that is stated here rather than presented as a default-configuration result."
    },
    "agents_count": 122,
    "tools_count": 4,
    "edges_count": 0,
    "posture_score": {
      "score": 0,
      "grade": "D",
      "label": "AT RISK",
      "color": "#ef4444",
      "assessable": true,
      "reasons": [],
      "fully_assessed": true,
      "assessment_gaps": [],
      "uncovered_files": 273,
      "fields_note": "fully_assessed and uncovered_files answer different questions and have different denominators. fully_assessed is true when the assessment ledger left no blocking gap among the posture-critical security properties; it is NOT a statement about file coverage. uncovered_files counts the files for which no framework-specific adapter matched, so they were analysed by the generic heuristic adapter instead; those files were still parsed (syntax_errors_count is 0) and still produced findings. Neither field means a file went unread, and neither field means an unobserved property was concluded safe.",
      "deductions": {
        "critical": 0,
        "high": 0,
        "medium": 15,
        "low": 322
      }
    },
    "findings_count": 408,
    "severity_counts": {
      "low": 161,
      "info": 244,
      "medium": 3
    },
    "syntax_errors_count": 0
  },
  "limitations": {
    "total": 275,
    "by_code": {
      "parser_uncovered_files": 273,
      "heuristic_mode_activated": 1,
      "assessment_ledger_evaluated": 1
    },
    "entries": [
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "heuristic_mode_activated",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "parser_uncovered_files",
      "assessment_ledger_evaluated"
    ],
    "note": "A limitation is not a finding and an absent finding is not a clean result. parser_uncovered_files means the file was not resolved by the parser, so nothing was concluded about it either way — not observed is not assessed safe."
  },
  "what_this_is_not": [
    "Not manual source review. Every entry here is automated static output.",
    "Not general taint or dataflow analysis; AxiomGate does not implement that.",
    "Not a vulnerability report, an exploitability assessment, or a security certification.",
    "Not runtime prevention. The subject was never executed.",
    "Not evidence about any commit other than the upstream commit named above."
  ],
  "reproduce": [
    "VERIFY THIS ARTIFACT (anyone can do this): run sha256sum findings.json and compare the digest against the one printed on the teardown page.",
    "VERIFY THE PUBLISHED NUMBERS (anyone can do this): compare findings_count, severity_counts and limitations.by_code on the teardown page against this file.",
    "VERIFY THE ANALYSED SOURCE (anyone can do this): git clone https://github.com/browser-use/browser-use && git checkout 6e1977daa0f67c9de0bc0e16aaec8b5833eeb8e0, then check the reported spans against that commit.",
    "RE-RUN THE ANALYSIS (you cannot do this from public packages): this scan was produced by the AxiomGate analysis engine with AXIOM_MAX_FILE_BYTES=300000. The engine is not publicly distributed, and neither axiomgate-kernel nor axiomgate-lint emits the rule ids in this artifact. What is published here is verifiable evidence of a scan, not a reproducible scan."
  ],
  "findings": [
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/simple.py",
      "start_line": 13,
      "end_line": 15,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/demo_mode_example.py",
      "start_line": 7,
      "end_line": 9,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/shopping.py",
      "start_line": 111,
      "end_line": 113,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/phone_comparison.py",
      "start_line": 56,
      "end_line": 58,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/pcpartpicker.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/onepassword.py",
      "start_line": 159,
      "end_line": 161,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/find_influencer_profiles.py",
      "start_line": 71,
      "end_line": 73,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/extract_pdf_content.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/check_appointment.py",
      "start_line": 46,
      "end_line": 48,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/captcha.py",
      "start_line": 26,
      "end_line": 28,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/buy_groceries.py",
      "start_line": 44,
      "end_line": 46,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/use-cases/apply_to_job.py",
      "start_line": 100,
      "end_line": 102,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_60' has unknown framework",
      "file": "examples/ui/streamlit_demo.py",
      "start_line": 60,
      "end_line": 62,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/ui/gradio_demo.py",
      "start_line": 70,
      "end_line": 72,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_76' has unknown framework",
      "file": "examples/ui/command_line.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/sandbox/structured_output.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/sandbox/example.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_21' has unknown framework",
      "file": "examples/observability/openLLMetry.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/bu_oss.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 71,
      "end_line": 73,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_with_provider_options' has unknown framework",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_with_reasoning_and_fallbacks' has unknown framework",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 81,
      "end_line": 83,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/skills.py",
      "start_line": 15,
      "end_line": 17,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/qwen.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/orcarouter.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/openrouter.py",
      "start_line": 23,
      "end_line": 25,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_10' has unknown framework",
      "file": "examples/models/ollama.py",
      "start_line": 10,
      "end_line": 10,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_105' has unknown framework",
      "file": "examples/models/oci_models.py",
      "start_line": 105,
      "end_line": 107,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_127' has unknown framework",
      "file": "examples/models/oci_models.py",
      "start_line": 127,
      "end_line": 129,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_163' has unknown framework",
      "file": "examples/models/oci_models.py",
      "start_line": 163,
      "end_line": 165,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/oci_models.py",
      "start_line": 193,
      "end_line": 195,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/novita.py",
      "start_line": 26,
      "end_line": 28,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/moonshot.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/modelscope_example.py",
      "start_line": 23,
      "end_line": 25,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/mistral.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/llama4-groq.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/lazy_import.py",
      "start_line": 4,
      "end_line": 6,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/gpt-5-mini.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/gpt-4.1.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/gemini.py",
      "start_line": 20,
      "end_line": 22,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/gemini-3.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/deepseek-chat.py",
      "start_line": 27,
      "end_line": 29,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/claude-4-sonnet.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/cerebras_example.py",
      "start_line": 69,
      "end_line": 71,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/browser_use_provider_models.py",
      "start_line": 38,
      "end_line": 40,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/browser_use_llm.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/azure_openai.py",
      "start_line": 41,
      "end_line": 43,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_36' has unknown framework",
      "file": "examples/models/aws.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/aws.py",
      "start_line": 63,
      "end_line": 65,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/models/langchain/example.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 259,
      "end_line": 261,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent2' has unknown framework",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 281,
      "end_line": 283,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent3' has unknown framework",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 295,
      "end_line": 297,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/integrations/slack/slack_api.py",
      "start_line": 86,
      "end_line": 88,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/integrations/discord/discord_api.py",
      "start_line": 110,
      "end_line": 112,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/integrations/agentmail/2fa.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/getting_started/05_fast_agent.py",
      "start_line": 52,
      "end_line": 54,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/getting_started/04_multi_step_task.py",
      "start_line": 53,
      "end_line": 55,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/getting_started/03_data_extraction.py",
      "start_line": 49,
      "end_line": 51,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/getting_started/02_form_filling.py",
      "start_line": 50,
      "end_line": 52,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/getting_started/01_basic_search.py",
      "start_line": 24,
      "end_line": 26,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/file_system/file_system.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/file_system/excel_sheet.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/file_system/alphabet_earnings.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/video_recording.py",
      "start_line": 12,
      "end_line": 14,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/stop_externally.py",
      "start_line": 35,
      "end_line": 37,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/small_model_for_extraction.py",
      "start_line": 19,
      "end_line": 21,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/sensitive_data.py",
      "start_line": 39,
      "end_line": 41,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/secure.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent1' has unknown framework",
      "file": "examples/features/scrolling_page.py",
      "start_line": 48,
      "end_line": 50,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent2' has unknown framework",
      "file": "examples/features/scrolling_page.py",
      "start_line": 55,
      "end_line": 57,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent3' has unknown framework",
      "file": "examples/features/scrolling_page.py",
      "start_line": 66,
      "end_line": 68,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/save_as_pdf.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/restrict_urls.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/rerun_history.py",
      "start_line": 75,
      "end_line": 77,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'substitute_agent' has unknown framework",
      "file": "examples/features/rerun_history.py",
      "start_line": 119,
      "end_line": 121,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/process_agent_output.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_31' has unknown framework",
      "file": "examples/features/parallel_agents.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/multi_tab.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/large_blocklist.py",
      "start_line": 95,
      "end_line": 97,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/judge_trace.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/initial_actions.py",
      "start_line": 19,
      "end_line": 21,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/follow_up_tasks.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/follow_up_task.py",
      "start_line": 15,
      "end_line": 17,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/fallback_model.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/download_file.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/custom_system_prompt.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/custom_output.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/csv_file_generation.py",
      "start_line": 30,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/blocked_domains.py",
      "start_line": 43,
      "end_line": 45,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/features/add_image_context.py",
      "start_line": 108,
      "end_line": 110,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/custom-functions/save_to_file_hugging_face.py",
      "start_line": 44,
      "end_line": 46,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/custom-functions/parallel_agents.py",
      "start_line": 190,
      "end_line": 192,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/custom-functions/onepassword_2fa.py",
      "start_line": 49,
      "end_line": 51,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/custom-functions/notification.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/custom-functions/file_upload.py",
      "start_line": 89,
      "end_line": 91,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/custom-functions/cua.py",
      "start_line": 299,
      "end_line": 301,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/custom-functions/advanced_search.py",
      "start_line": 97,
      "end_line": 99,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/custom-functions/actor_use.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/custom-functions/action_filters.py",
      "start_line": 101,
      "end_line": 103,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_32' has unknown framework",
      "file": "examples/custom-functions/2fa.py",
      "start_line": 32,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/browser/using_cdp.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/browser/real_browser.py",
      "start_line": 39,
      "end_line": 41,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/browser/playwright_integration.py",
      "start_line": 325,
      "end_line": 327,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_20' has unknown framework",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 20,
      "end_line": 22,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_25' has unknown framework",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_30' has unknown framework",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 30,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/browser/custom_headers.py",
      "start_line": 88,
      "end_line": 90,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_22' has unknown framework",
      "file": "examples/browser/cloud_browser.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/browser/cloud_browser.py",
      "start_line": 40,
      "end_line": 42,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/beta_agent/basic.py",
      "start_line": 23,
      "end_line": 25,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/apps/news-use/news_monitor.py",
      "start_line": 86,
      "end_line": 88,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_140' has unknown framework",
      "file": "examples/apps/msg-use/scheduler.py",
      "start_line": 140,
      "end_line": 142,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/apps/msg-use/scheduler.py",
      "start_line": 169,
      "end_line": 171,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/apps/msg-use/login.py",
      "start_line": 55,
      "end_line": 57,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "examples/apps/ad-use/ad_generator.py",
      "start_line": 59,
      "end_line": 61,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "browser_use/mcp/server.py",
      "start_line": 713,
      "end_line": 715,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "browser_use/dom/playground/multi_act.py",
      "start_line": 24,
      "end_line": 26,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'RustSdkJsonRpcError' has unknown framework",
      "file": "browser_use/beta/service.py",
      "start_line": 315,
      "end_line": 317,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'AgentOutputNoThinking' has unknown framework",
      "file": "browser_use/agent/views.py",
      "start_line": 437,
      "end_line": 439,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'AgentOutputFlashMode' has unknown framework",
      "file": "browser_use/agent/views.py",
      "start_line": 461,
      "end_line": 463,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has unknown framework",
      "file": "browser_use/actor/playground/flights.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent is insecure"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/simple.py",
      "start_line": 13,
      "end_line": 15,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/demo_mode_example.py",
      "start_line": 7,
      "end_line": 9,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/shopping.py",
      "start_line": 111,
      "end_line": 113,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/phone_comparison.py",
      "start_line": 56,
      "end_line": 58,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/pcpartpicker.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/onepassword.py",
      "start_line": 159,
      "end_line": 161,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/find_influencer_profiles.py",
      "start_line": 71,
      "end_line": 73,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/extract_pdf_content.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/check_appointment.py",
      "start_line": 46,
      "end_line": 48,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/captcha.py",
      "start_line": 26,
      "end_line": 28,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/buy_groceries.py",
      "start_line": 44,
      "end_line": 46,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/use-cases/apply_to_job.py",
      "start_line": 100,
      "end_line": 102,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_60' has no model_hint",
      "file": "examples/ui/streamlit_demo.py",
      "start_line": 60,
      "end_line": 62,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/ui/gradio_demo.py",
      "start_line": 70,
      "end_line": 72,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_76' has no model_hint",
      "file": "examples/ui/command_line.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/sandbox/structured_output.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/sandbox/example.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_21' has no model_hint",
      "file": "examples/observability/openLLMetry.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/bu_oss.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 71,
      "end_line": 73,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_with_provider_options' has no model_hint",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_with_reasoning_and_fallbacks' has no model_hint",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 81,
      "end_line": 83,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/skills.py",
      "start_line": 15,
      "end_line": 17,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/qwen.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/orcarouter.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/openrouter.py",
      "start_line": 23,
      "end_line": 25,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_10' has no model_hint",
      "file": "examples/models/ollama.py",
      "start_line": 10,
      "end_line": 10,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_105' has no model_hint",
      "file": "examples/models/oci_models.py",
      "start_line": 105,
      "end_line": 107,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_127' has no model_hint",
      "file": "examples/models/oci_models.py",
      "start_line": 127,
      "end_line": 129,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_163' has no model_hint",
      "file": "examples/models/oci_models.py",
      "start_line": 163,
      "end_line": 165,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/oci_models.py",
      "start_line": 193,
      "end_line": 195,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/novita.py",
      "start_line": 26,
      "end_line": 28,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/moonshot.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/modelscope_example.py",
      "start_line": 23,
      "end_line": 25,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/mistral.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/llama4-groq.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/lazy_import.py",
      "start_line": 4,
      "end_line": 6,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/gpt-5-mini.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/gpt-4.1.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/gemini.py",
      "start_line": 20,
      "end_line": 22,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/gemini-3.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/deepseek-chat.py",
      "start_line": 27,
      "end_line": 29,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/claude-4-sonnet.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/cerebras_example.py",
      "start_line": 69,
      "end_line": 71,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/browser_use_provider_models.py",
      "start_line": 38,
      "end_line": 40,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/browser_use_llm.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/azure_openai.py",
      "start_line": 41,
      "end_line": 43,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_36' has no model_hint",
      "file": "examples/models/aws.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/aws.py",
      "start_line": 63,
      "end_line": 65,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/models/langchain/example.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 259,
      "end_line": 261,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent2' has no model_hint",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 281,
      "end_line": 283,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent3' has no model_hint",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 295,
      "end_line": 297,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/integrations/slack/slack_api.py",
      "start_line": 86,
      "end_line": 88,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/integrations/discord/discord_api.py",
      "start_line": 110,
      "end_line": 112,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/integrations/agentmail/2fa.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/getting_started/05_fast_agent.py",
      "start_line": 52,
      "end_line": 54,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/getting_started/04_multi_step_task.py",
      "start_line": 53,
      "end_line": 55,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/getting_started/03_data_extraction.py",
      "start_line": 49,
      "end_line": 51,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/getting_started/02_form_filling.py",
      "start_line": 50,
      "end_line": 52,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/getting_started/01_basic_search.py",
      "start_line": 24,
      "end_line": 26,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/file_system/file_system.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/file_system/excel_sheet.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/file_system/alphabet_earnings.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/video_recording.py",
      "start_line": 12,
      "end_line": 14,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/stop_externally.py",
      "start_line": 35,
      "end_line": 37,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/small_model_for_extraction.py",
      "start_line": 19,
      "end_line": 21,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/sensitive_data.py",
      "start_line": 39,
      "end_line": 41,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/secure.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent1' has no model_hint",
      "file": "examples/features/scrolling_page.py",
      "start_line": 48,
      "end_line": 50,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent2' has no model_hint",
      "file": "examples/features/scrolling_page.py",
      "start_line": 55,
      "end_line": 57,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent3' has no model_hint",
      "file": "examples/features/scrolling_page.py",
      "start_line": 66,
      "end_line": 68,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/save_as_pdf.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/restrict_urls.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/rerun_history.py",
      "start_line": 75,
      "end_line": 77,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'substitute_agent' has no model_hint",
      "file": "examples/features/rerun_history.py",
      "start_line": 119,
      "end_line": 121,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/process_agent_output.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_31' has no model_hint",
      "file": "examples/features/parallel_agents.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/multi_tab.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/large_blocklist.py",
      "start_line": 95,
      "end_line": 97,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/judge_trace.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/initial_actions.py",
      "start_line": 19,
      "end_line": 21,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/follow_up_tasks.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/follow_up_task.py",
      "start_line": 15,
      "end_line": 17,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/fallback_model.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/download_file.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/custom_system_prompt.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/custom_output.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/csv_file_generation.py",
      "start_line": 30,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/blocked_domains.py",
      "start_line": 43,
      "end_line": 45,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/features/add_image_context.py",
      "start_line": 108,
      "end_line": 110,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/custom-functions/save_to_file_hugging_face.py",
      "start_line": 44,
      "end_line": 46,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/custom-functions/parallel_agents.py",
      "start_line": 190,
      "end_line": 192,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/custom-functions/onepassword_2fa.py",
      "start_line": 49,
      "end_line": 51,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/custom-functions/notification.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/custom-functions/file_upload.py",
      "start_line": 89,
      "end_line": 91,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/custom-functions/cua.py",
      "start_line": 299,
      "end_line": 301,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/custom-functions/advanced_search.py",
      "start_line": 97,
      "end_line": 99,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/custom-functions/actor_use.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/custom-functions/action_filters.py",
      "start_line": 101,
      "end_line": 103,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_32' has no model_hint",
      "file": "examples/custom-functions/2fa.py",
      "start_line": 32,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/browser/using_cdp.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/browser/real_browser.py",
      "start_line": 39,
      "end_line": 41,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/browser/playwright_integration.py",
      "start_line": 325,
      "end_line": 327,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_20' has no model_hint",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 20,
      "end_line": 22,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_25' has no model_hint",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_30' has no model_hint",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 30,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/browser/custom_headers.py",
      "start_line": 88,
      "end_line": 90,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_22' has no model_hint",
      "file": "examples/browser/cloud_browser.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/browser/cloud_browser.py",
      "start_line": 40,
      "end_line": 42,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/beta_agent/basic.py",
      "start_line": 23,
      "end_line": 25,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/apps/news-use/news_monitor.py",
      "start_line": 86,
      "end_line": 88,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_140' has no model_hint",
      "file": "examples/apps/msg-use/scheduler.py",
      "start_line": 140,
      "end_line": 142,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/apps/msg-use/scheduler.py",
      "start_line": 169,
      "end_line": 171,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/apps/msg-use/login.py",
      "start_line": 55,
      "end_line": 57,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "examples/apps/ad-use/ad_generator.py",
      "start_line": 59,
      "end_line": 61,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "browser_use/mcp/server.py",
      "start_line": 713,
      "end_line": 715,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "browser_use/dom/playground/multi_act.py",
      "start_line": 24,
      "end_line": 26,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'RustSdkJsonRpcError' has no model_hint",
      "file": "browser_use/beta/service.py",
      "start_line": 315,
      "end_line": 317,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'AgentOutputNoThinking' has no model_hint",
      "file": "browser_use/agent/views.py",
      "start_line": 437,
      "end_line": 439,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'AgentOutputFlashMode' has no model_hint",
      "file": "browser_use/agent/views.py",
      "start_line": 461,
      "end_line": 463,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "AUTH-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no model_hint",
      "file": "browser_use/actor/playground/flights.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent uses a default model"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/__init__.py:125 (importlib.import_module), not bound to any discovered agent tool",
      "file": "browser_use/__init__.py",
      "start_line": 125,
      "end_line": 125,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/agent/__init__.py:22 (importlib.import_module), not bound to any discovered agent tool",
      "file": "browser_use/agent/__init__.py",
      "start_line": 22,
      "end_line": 22,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/beta/__init__.py:47 (importlib.import_module), not bound to any discovered agent tool",
      "file": "browser_use/beta/__init__.py",
      "start_line": 47,
      "end_line": 47,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/beta/service.py:303 (subprocess.run), not bound to any discovered agent tool",
      "file": "browser_use/beta/service.py",
      "start_line": 303,
      "end_line": 303,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/browser/__init__.py:26 (importlib.import_module), not bound to any discovered agent tool",
      "file": "browser_use/browser/__init__.py",
      "start_line": 26,
      "end_line": 26,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/browser/chrome.py:54 (subprocess.run), not bound to any discovered agent tool",
      "file": "browser_use/browser/chrome.py",
      "start_line": 54,
      "end_line": 54,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/cli.py:71 (importlib.import_module), not bound to any discovered agent tool",
      "file": "browser_use/cli.py",
      "start_line": 71,
      "end_line": 71,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/cli.py:101 (subprocess.run), not bound to any discovered agent tool",
      "file": "browser_use/cli.py",
      "start_line": 101,
      "end_line": 101,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/llm/__init__.py:112 (importlib.import_module), not bound to any discovered agent tool",
      "file": "browser_use/llm/__init__.py",
      "start_line": 112,
      "end_line": 112,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/llm/aws/__init__.py:22 (importlib.import_module), not bound to any discovered agent tool",
      "file": "browser_use/llm/aws/__init__.py",
      "start_line": 22,
      "end_line": 22,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/mcp/cli_mcp.py:120 (exec()), not bound to any discovered agent tool",
      "file": "browser_use/mcp/cli_mcp.py",
      "start_line": 120,
      "end_line": 120,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/mcp/cli_mcp.py:143 (exec()), not bound to any discovered agent tool",
      "file": "browser_use/mcp/cli_mcp.py",
      "start_line": 143,
      "end_line": 143,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/skills/install.py:71 (subprocess.run), not bound to any discovered agent tool",
      "file": "browser_use/skills/install.py",
      "start_line": 71,
      "end_line": 71,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/skills/install.py:81 (subprocess.run), not bound to any discovered agent tool",
      "file": "browser_use/skills/install.py",
      "start_line": 81,
      "end_line": 81,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/telemetry/__init__.py:32 (importlib.import_module), not bound to any discovered agent tool",
      "file": "browser_use/telemetry/__init__.py",
      "start_line": 32,
      "end_line": 32,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/utils.py:772 (subprocess.check_output), not bound to any discovered agent tool",
      "file": "browser_use/utils.py",
      "start_line": 772,
      "end_line": 772,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/utils.py:777 (subprocess.check_output), not bound to any discovered agent tool",
      "file": "browser_use/utils.py",
      "start_line": 777,
      "end_line": 777,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/utils.py:784 (subprocess.check_output), not bound to any discovered agent tool",
      "file": "browser_use/utils.py",
      "start_line": 784,
      "end_line": 784,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at browser_use/utils.py:791 (subprocess.check_output), not bound to any discovered agent tool",
      "file": "browser_use/utils.py",
      "start_line": 791,
      "end_line": 791,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at examples/apps/ad-use/ad_generator.py:284 (subprocess.run), not bound to any discovered agent tool",
      "file": "examples/apps/ad-use/ad_generator.py",
      "start_line": 284,
      "end_line": 284,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at examples/apps/ad-use/ad_generator.py:286 (subprocess.run), not bound to any discovered agent tool",
      "file": "examples/apps/ad-use/ad_generator.py",
      "start_line": 286,
      "end_line": 286,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "EXEC-001",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Execution sink observed at examples/apps/ad-use/ad_generator.py:288 (subprocess.run), not bound to any discovered agent tool",
      "file": "examples/apps/ad-use/ad_generator.py",
      "start_line": 288,
      "end_line": 288,
      "cannot_claim": "This does not prove an agent can reach this sink; no agent was observed to hold it"
    },
    {
      "rule_id": "IDENTITY-001",
      "rule_version": "v1",
      "severity": "medium",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent name collision: 'agent' used by 96 agents",
      "file": "examples/simple.py",
      "start_line": 13,
      "end_line": 15,
      "cannot_claim": "This does not prove the collision causes a security issue"
    },
    {
      "rule_id": "IDENTITY-001",
      "rule_version": "v1",
      "severity": "medium",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent name collision: 'agent2' used by 2 agents",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 281,
      "end_line": 283,
      "cannot_claim": "This does not prove the collision causes a security issue"
    },
    {
      "rule_id": "IDENTITY-001",
      "rule_version": "v1",
      "severity": "medium",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent name collision: 'agent3' used by 2 agents",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 295,
      "end_line": 297,
      "cannot_claim": "This does not prove the collision causes a security issue"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_60' has auto-generated name",
      "file": "examples/ui/streamlit_demo.py",
      "start_line": 60,
      "end_line": 62,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_76' has auto-generated name",
      "file": "examples/ui/command_line.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_21' has auto-generated name",
      "file": "examples/observability/openLLMetry.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_with_provider_options' has auto-generated name",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_with_reasoning_and_fallbacks' has auto-generated name",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 81,
      "end_line": 83,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_10' has auto-generated name",
      "file": "examples/models/ollama.py",
      "start_line": 10,
      "end_line": 10,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_105' has auto-generated name",
      "file": "examples/models/oci_models.py",
      "start_line": 105,
      "end_line": 107,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_127' has auto-generated name",
      "file": "examples/models/oci_models.py",
      "start_line": 127,
      "end_line": 129,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_163' has auto-generated name",
      "file": "examples/models/oci_models.py",
      "start_line": 163,
      "end_line": 165,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_36' has auto-generated name",
      "file": "examples/models/aws.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_31' has auto-generated name",
      "file": "examples/features/parallel_agents.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_32' has auto-generated name",
      "file": "examples/custom-functions/2fa.py",
      "start_line": 32,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_20' has auto-generated name",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 20,
      "end_line": 22,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_25' has auto-generated name",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_30' has auto-generated name",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 30,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_22' has auto-generated name",
      "file": "examples/browser/cloud_browser.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "IDENTITY-002",
      "rule_version": "v1",
      "severity": "low",
      "confidence": "inferred",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_140' has auto-generated name",
      "file": "examples/apps/msg-use/scheduler.py",
      "start_line": 140,
      "end_line": 142,
      "cannot_claim": "This does not prove the agent is unnamed in source"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/simple.py",
      "start_line": 13,
      "end_line": 15,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/demo_mode_example.py",
      "start_line": 7,
      "end_line": 9,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/shopping.py",
      "start_line": 111,
      "end_line": 113,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/phone_comparison.py",
      "start_line": 56,
      "end_line": 58,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/pcpartpicker.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/onepassword.py",
      "start_line": 159,
      "end_line": 161,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/find_influencer_profiles.py",
      "start_line": 71,
      "end_line": 73,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/extract_pdf_content.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/check_appointment.py",
      "start_line": 46,
      "end_line": 48,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/captcha.py",
      "start_line": 26,
      "end_line": 28,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/buy_groceries.py",
      "start_line": 44,
      "end_line": 46,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/use-cases/apply_to_job.py",
      "start_line": 100,
      "end_line": 102,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_60' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/ui/streamlit_demo.py",
      "start_line": 60,
      "end_line": 62,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/ui/gradio_demo.py",
      "start_line": 70,
      "end_line": 72,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_76' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/ui/command_line.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/sandbox/structured_output.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/sandbox/example.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_21' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/observability/openLLMetry.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/bu_oss.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 71,
      "end_line": 73,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_with_provider_options' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_with_reasoning_and_fallbacks' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/vercel_ai_gateway.py",
      "start_line": 81,
      "end_line": 83,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/skills.py",
      "start_line": 15,
      "end_line": 17,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/qwen.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/orcarouter.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/openrouter.py",
      "start_line": 23,
      "end_line": 25,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_10' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/ollama.py",
      "start_line": 10,
      "end_line": 10,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_105' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/oci_models.py",
      "start_line": 105,
      "end_line": 107,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_127' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/oci_models.py",
      "start_line": 127,
      "end_line": 129,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_163' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/oci_models.py",
      "start_line": 163,
      "end_line": 165,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/oci_models.py",
      "start_line": 193,
      "end_line": 195,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/novita.py",
      "start_line": 26,
      "end_line": 28,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/moonshot.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/modelscope_example.py",
      "start_line": 23,
      "end_line": 25,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/mistral.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/llama4-groq.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/lazy_import.py",
      "start_line": 4,
      "end_line": 6,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/gpt-5-mini.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/gpt-4.1.py",
      "start_line": 17,
      "end_line": 19,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/gemini.py",
      "start_line": 20,
      "end_line": 22,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/gemini-3.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/deepseek-chat.py",
      "start_line": 27,
      "end_line": 29,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/claude-4-sonnet.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/cerebras_example.py",
      "start_line": 69,
      "end_line": 71,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/browser_use_provider_models.py",
      "start_line": 38,
      "end_line": 40,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/browser_use_llm.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/azure_openai.py",
      "start_line": 41,
      "end_line": 43,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_36' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/aws.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/aws.py",
      "start_line": 63,
      "end_line": 65,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/models/langchain/example.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 259,
      "end_line": 261,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent2' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 281,
      "end_line": 283,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent3' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/integrations/gmail_2fa_integration.py",
      "start_line": 295,
      "end_line": 297,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/integrations/slack/slack_api.py",
      "start_line": 86,
      "end_line": 88,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/integrations/discord/discord_api.py",
      "start_line": 110,
      "end_line": 112,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/integrations/agentmail/2fa.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/getting_started/05_fast_agent.py",
      "start_line": 52,
      "end_line": 54,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/getting_started/04_multi_step_task.py",
      "start_line": 53,
      "end_line": 55,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/getting_started/03_data_extraction.py",
      "start_line": 49,
      "end_line": 51,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/getting_started/02_form_filling.py",
      "start_line": 50,
      "end_line": 52,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/getting_started/01_basic_search.py",
      "start_line": 24,
      "end_line": 26,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/file_system/file_system.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/file_system/excel_sheet.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/file_system/alphabet_earnings.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/video_recording.py",
      "start_line": 12,
      "end_line": 14,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/stop_externally.py",
      "start_line": 35,
      "end_line": 37,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/small_model_for_extraction.py",
      "start_line": 19,
      "end_line": 21,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/sensitive_data.py",
      "start_line": 39,
      "end_line": 41,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/secure.py",
      "start_line": 76,
      "end_line": 78,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent1' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/scrolling_page.py",
      "start_line": 48,
      "end_line": 50,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent2' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/scrolling_page.py",
      "start_line": 55,
      "end_line": 57,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent3' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/scrolling_page.py",
      "start_line": 66,
      "end_line": 68,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/save_as_pdf.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/restrict_urls.py",
      "start_line": 29,
      "end_line": 31,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/rerun_history.py",
      "start_line": 75,
      "end_line": 77,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'substitute_agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/rerun_history.py",
      "start_line": 119,
      "end_line": 121,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/process_agent_output.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_31' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/parallel_agents.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/multi_tab.py",
      "start_line": 21,
      "end_line": 23,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/large_blocklist.py",
      "start_line": 95,
      "end_line": 97,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/judge_trace.py",
      "start_line": 31,
      "end_line": 33,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/initial_actions.py",
      "start_line": 19,
      "end_line": 21,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/follow_up_tasks.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/follow_up_task.py",
      "start_line": 15,
      "end_line": 17,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/fallback_model.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/download_file.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/custom_system_prompt.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/custom_output.py",
      "start_line": 36,
      "end_line": 38,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/csv_file_generation.py",
      "start_line": 30,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/blocked_domains.py",
      "start_line": 43,
      "end_line": 45,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/features/add_image_context.py",
      "start_line": 108,
      "end_line": 110,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/save_to_file_hugging_face.py",
      "start_line": 44,
      "end_line": 46,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/parallel_agents.py",
      "start_line": 190,
      "end_line": 192,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/onepassword_2fa.py",
      "start_line": 49,
      "end_line": 51,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/notification.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/file_upload.py",
      "start_line": 89,
      "end_line": 91,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/cua.py",
      "start_line": 299,
      "end_line": 301,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/advanced_search.py",
      "start_line": 97,
      "end_line": 99,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/actor_use.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/action_filters.py",
      "start_line": 101,
      "end_line": 103,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_32' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/custom-functions/2fa.py",
      "start_line": 32,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/browser/using_cdp.py",
      "start_line": 37,
      "end_line": 39,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/browser/real_browser.py",
      "start_line": 39,
      "end_line": 41,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/browser/playwright_integration.py",
      "start_line": 325,
      "end_line": 327,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_20' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 20,
      "end_line": 22,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_25' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 25,
      "end_line": 27,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_30' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/browser/parallel_browser.py",
      "start_line": 30,
      "end_line": 32,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/browser/custom_headers.py",
      "start_line": 88,
      "end_line": 90,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_22' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/browser/cloud_browser.py",
      "start_line": 22,
      "end_line": 24,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/browser/cloud_browser.py",
      "start_line": 40,
      "end_line": 42,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/beta_agent/basic.py",
      "start_line": 23,
      "end_line": 25,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/apps/news-use/news_monitor.py",
      "start_line": 86,
      "end_line": 88,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent_140' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/apps/msg-use/scheduler.py",
      "start_line": 140,
      "end_line": 142,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/apps/msg-use/scheduler.py",
      "start_line": 169,
      "end_line": 171,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/apps/msg-use/login.py",
      "start_line": 55,
      "end_line": 57,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "examples/apps/ad-use/ad_generator.py",
      "start_line": 59,
      "end_line": 61,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "browser_use/mcp/server.py",
      "start_line": 713,
      "end_line": 715,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "browser_use/dom/playground/multi_act.py",
      "start_line": 24,
      "end_line": 26,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'RustSdkJsonRpcError' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "browser_use/beta/service.py",
      "start_line": 315,
      "end_line": 317,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'AgentOutputNoThinking' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "browser_use/agent/views.py",
      "start_line": 437,
      "end_line": 439,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'AgentOutputFlashMode' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "browser_use/agent/views.py",
      "start_line": 461,
      "end_line": 463,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    },
    {
      "rule_id": "COMP-003",
      "rule_version": "v1",
      "severity": "info",
      "confidence": "verified",
      "analysis_tier": "heuristic",
      "message": "Agent 'agent' has no delegation edges [IMPOSSIBILITY: composition safety cannot be formally verified from static analysis alone]",
      "file": "browser_use/actor/playground/flights.py",
      "start_line": 32,
      "end_line": 34,
      "cannot_claim": "This does not prove the agent is isolated in the actual system"
    }
  ]
}
