{"data":{"skill":{"slug":"aaron-he-zhu-contract-helper","name":"contract-helper","icon":"📦","repo":"https://github.com/aaron-he-zhu/aaron-marketing-skills/tree/main/influencer/activate/contract-helper","status":"approved","author":"aaron-he-zhu","authorVersion":null,"skillstoreRevision":null},"audit":{"id":"e7082aba-b161-4c74-a24f-e5c49ae8ec32","skill_id":"a5d5db9f-3be6-4ae5-8b48-ee99e87f4b2b","version":1,"content_hash":"e0d2ea367c01075bbadcf0eb166fe64e","risk_level":"safe","is_blocked":false,"safe_to_publish":true,"analysis_status":"ok","agent_auto_install_policy":"allowed","manual_install_policy":"allowed","summary":"The static findings are false positives caused by Markdown code fences, static repository links, metadata URLs, and ordinary contract terminology. I found no evidence of executable commands, arbitrary path traversal, network exfiltration, reconnaissance behavior, or prompt-injection text in the reviewed files.","remediation":[],"risk_factor_evidence":[{"factor":"filesystem","evidence":[{"file":"references/templates.md","line_end":3,"line_start":3},{"file":"SKILL.md","line_end":33,"line_start":33},{"file":"SKILL.md","line_end":40,"line_start":40},{"file":"SKILL.md","line_end":44,"line_start":44},{"file":"SKILL.md","line_end":56,"line_start":56},{"file":"SKILL.md","line_end":67,"line_start":67},{"file":"SKILL.md","line_end":78,"line_start":78},{"file":"SKILL.md","line_end":79,"line_start":79},{"file":"SKILL.md","line_end":80,"line_start":80},{"file":"SKILL.md","line_end":81,"line_start":81},{"file":"SKILL.md","line_end":85,"line_start":85},{"file":"SKILL.md","line_end":88,"line_start":88},{"file":"SKILL.md","line_end":89,"line_start":89},{"file":"SKILL.md","line_end":95,"line_start":95},{"file":"SKILL.md","line_end":96,"line_start":96},{"file":"SKILL.md","line_end":97,"line_start":97},{"file":"SKILL.md","line_end":98,"line_start":98}]},{"factor":"external_commands","evidence":[{"file":"SKILL.md","line_end":26,"line_start":24},{"file":"SKILL.md","line_end":27,"line_start":26},{"file":"SKILL.md","line_end":29,"line_start":27},{"file":"SKILL.md","line_end":33,"line_start":29},{"file":"SKILL.md","line_end":33,"line_start":33},{"file":"SKILL.md","line_end":34,"line_start":34},{"file":"SKILL.md","line_end":52,"line_start":35},{"file":"SKILL.md","line_end":53,"line_start":52},{"file":"SKILL.md","line_end":54,"line_start":53},{"file":"SKILL.md","line_end":67,"line_start":54},{"file":"SKILL.md","line_end":67,"line_start":67}]},{"factor":"network","evidence":[{"file":"SKILL.md","line_end":10,"line_start":10},{"file":"SKILL.md","line_end":13,"line_start":13}]}],"critical_findings":[],"high_findings":[],"medium_findings":[],"low_findings":[],"dangerous_patterns":[],"files_scanned":2,"total_lines":606,"audit_model":"codex","audited_at":"2026-07-04T15:53:47.471+00:00","created_at":"2026-07-05T00:39:26.004374+00:00","static_findings":[{"id":"filesystem:references/templates.md:3:path-traversal-sequence","file":"references/templates.md","pattern":"Path traversal sequence","snippet":"Moved out of `SKILL.md` to keep the skill lean. This file holds the full agreement template, paramet","category":"filesystem","line_end":3,"severity":"high","line_start":3},{"id":"blocker:references/templates.md:139:system-reconnaissance","file":"references/templates.md","pattern":"System reconnaissance","snippet":"- [ ] Use Content in paid social media advertising","category":"blocker","line_end":139,"severity":"low","line_start":139},{"id":"blocker:references/templates.md:157:system-reconnaissance","file":"references/templates.md","pattern":"System reconnaissance","snippet":"### 3.4 Whitelisting/Paid Amplification Rights","category":"blocker","line_end":157,"severity":"low","line_start":157},{"id":"blocker:references/templates.md:159:system-reconnaissance","file":"references/templates.md","pattern":"System reconnaissance","snippet":"Brand [IS/IS NOT] authorized to run paid advertisements using Influencer's identity through:","category":"blocker","line_end":159,"severity":"low","line_start":159},{"id":"blocker:references/templates.md:485:system-reconnaissance","file":"references/templates.md","pattern":"System reconnaissance","snippet":"| Exclusivity | None or paid extra | Category exclusive | 30-60 days, limited category |","category":"blocker","line_end":485,"severity":"low","line_start":485},{"id":"external_commands:SKILL.md:24:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":26,"severity":"medium","line_start":24},{"id":"external_commands:SKILL.md:26:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":27,"severity":"medium","line_start":26},{"id":"external_commands:SKILL.md:27:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":29,"severity":"medium","line_start":27},{"id":"external_commands:SKILL.md:29:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":33,"severity":"medium","line_start":29},{"id":"external_commands:SKILL.md:33:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- **Reads**: campaign brief, agreed deliverables, compensation figure, platform list, usage-rights a","category":"external_commands","line_end":33,"severity":"medium","line_start":33},{"id":"external_commands:SKILL.md:34:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- **Writes**: drafted agreement or review memo to `memory/influencer/contract-helper/YYYY-MM-DD-<top","category":"external_commands","line_end":34,"severity":"medium","line_start":34},{"id":"external_commands:SKILL.md:35:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- **Promotes**: durable facts (signed terms, usage-rights window, exclusivity scope, payment schedul","category":"external_commands","line_end":52,"severity":"medium","line_start":35},{"id":"external_commands:SKILL.md:52:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `~~CRM` / deal record — pull agreed scope and rate so you don't re-type them.","category":"external_commands","line_end":53,"severity":"medium","line_start":52},{"id":"external_commands:SKILL.md:53:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `~~influencer database` — confirm the creator's legal name, entity, and audience-authenticity sign","category":"external_commands","line_end":54,"severity":"medium","line_start":53},{"id":"external_commands:SKILL.md:54:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `~~e-signature` — route the finished agreement for signing.","category":"external_commands","line_end":67,"severity":"medium","line_start":54},{"id":"external_commands:SKILL.md:67:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Save the drafted agreement or review memo to `memory/influencer/contract-helper/YYYY-MM-DD-<topic>.m","category":"external_commands","line_end":67,"severity":"medium","line_start":67},{"id":"network:SKILL.md:10:hardcoded-url","file":"SKILL.md","pattern":"Hardcoded URL","snippet":"homepage: \"https://github.com/aaron-he-zhu/aaron-marketing-skills\"","category":"network","line_end":10,"severity":"low","line_start":10},{"id":"network:SKILL.md:13:hardcoded-url","file":"SKILL.md","pattern":"Hardcoded URL","snippet":"metadata: {\"author\": \"aaron-he-zhu\", \"version\": \"13.0.0\", \"discipline\": \"influencer\", \"phase\": \"acti","category":"network","line_end":13,"severity":"low","line_start":13},{"id":"filesystem:SKILL.md:33:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- **Reads**: campaign brief, agreed deliverables, compensation figure, platform list, usage-rights a","category":"filesystem","line_end":33,"severity":"high","line_start":33},{"id":"filesystem:SKILL.md:40:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- **Primary next skill**: [content-amplifier](../content-amplifier/SKILL.md) — once the contract is ","category":"filesystem","line_end":40,"severity":"high","line_start":40},{"id":"filesystem:SKILL.md:44:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"> Emit the standard shape from [skill-contract.md §Handoff Summary Format](../../../references/skill","category":"filesystem","line_end":44,"severity":"high","line_start":44},{"id":"filesystem:SKILL.md:56:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"See [CONNECTORS.md](../../../CONNECTORS.md) for the free/keyless recipe per category. None are requi","category":"filesystem","line_end":56,"severity":"high","line_start":56},{"id":"filesystem:SKILL.md:67:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"Save the drafted agreement or review memo to `memory/influencer/contract-helper/YYYY-MM-DD-<topic>.m","category":"filesystem","line_end":67,"severity":"high","line_start":67},{"id":"filesystem:SKILL.md:78:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- [skill-contract.md](../../../references/skill-contract.md) — shared contract and Handoff Summary f","category":"filesystem","line_end":78,"severity":"high","line_start":78},{"id":"filesystem:SKILL.md:79:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- [state-model.md](../../../references/state-model.md) — memory tiers and save-path convention.","category":"filesystem","line_end":79,"severity":"high","line_start":79},{"id":"filesystem:SKILL.md:80:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- [CONNECTORS.md](../../../CONNECTORS.md) — free/keyless connector recipes per category.","category":"filesystem","line_end":80,"severity":"high","line_start":80},{"id":"filesystem:SKILL.md:81:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- Sibling skills: [outreach-manager](../outreach-manager/SKILL.md) (negotiate before contract), [con","category":"filesystem","line_end":81,"severity":"high","line_start":81},{"id":"filesystem:SKILL.md:85:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"**Primary**: [content-amplifier](../content-amplifier/SKILL.md) — once the agreement is signed and u","category":"filesystem","line_end":85,"severity":"high","line_start":85},{"id":"filesystem:SKILL.md:88:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- [content-reviewer](../content-reviewer/SKILL.md) — run the approval workflow the contract defines.","category":"filesystem","line_end":88,"severity":"high","line_start":88},{"id":"filesystem:SKILL.md:89:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- [outreach-manager](../outreach-manager/SKILL.md) — if terms stall, return to negotiation before re","category":"filesystem","line_end":89,"severity":"high","line_start":89},{"id":"filesystem:SKILL.md:95:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- [outreach-manager](../outreach-manager/SKILL.md) - Negotiate before contract","category":"filesystem","line_end":95,"severity":"high","line_start":95},{"id":"filesystem:SKILL.md:96:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- [brief-generator](../../plan/brief-generator/SKILL.md) - Attach brief as exhibit","category":"filesystem","line_end":96,"severity":"high","line_start":96},{"id":"filesystem:SKILL.md:97:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- [content-reviewer](../content-reviewer/SKILL.md) - Execute approval process","category":"filesystem","line_end":97,"severity":"high","line_start":97},{"id":"filesystem:SKILL.md:98:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"- [budget-optimizer](../../plan/budget-optimizer/SKILL.md) - Set compensation terms","category":"filesystem","line_end":98,"severity":"high","line_start":98},{"id":"blocker:SKILL.md:85:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"**Primary**: [content-amplifier](../content-amplifier/SKILL.md) — once the agreement is signed and u","category":"blocker","line_end":85,"severity":"low","line_start":85},{"id":"blocker:SKILL.md:97:network-reconnaissance","file":"SKILL.md","pattern":"Network reconnaissance","snippet":"- [content-reviewer](../content-reviewer/SKILL.md) - Execute approval process","category":"blocker","line_end":98,"severity":"low","line_start":97}],"finding_verdicts":[{"id":"filesystem:references/templates.md:3:path-traversal-sequence","reason":"Line 3 only explains that documentation links back to the repository root use ../../../. It is Markdown reference text, not a file-read operation or user-controlled path traversal.","verdict":"false_positive","confidence":0.93},{"id":"blocker:references/templates.md:139:system-reconnaissance","reason":"Line 139 is a contract checklist item for paid social media usage rights. It does not inspect the system, enumerate files, or collect host information.","verdict":"false_positive","confidence":0.93},{"id":"blocker:references/templates.md:157:system-reconnaissance","reason":"Line 157 is a section heading about whitelisting and paid amplification rights in a creator agreement. It is legal/marketing terminology, not reconnaissance behavior.","verdict":"false_positive","confidence":0.93},{"id":"blocker:references/templates.md:159:system-reconnaissance","reason":"Line 159 describes whether a brand may run paid ads using creator identity. It does not issue network probes, discover services, or gather system details.","verdict":"false_positive","confidence":0.93},{"id":"blocker:references/templates.md:485:system-reconnaissance","reason":"Line 485 is a negotiation table row about exclusivity terms. It contains no reconnaissance instruction or operational capability.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:24:ruby-shell-backtick-execution","reason":"Lines 24-26 are a fenced Markdown example prompt for drafting an agreement. There is no shell command, interpreter call, or executable backtick usage.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:26:ruby-shell-backtick-execution","reason":"Line 26 closes a Markdown code fence around a user prompt example. It is formatting only and cannot execute commands.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:27:ruby-shell-backtick-execution","reason":"Lines 27-29 are another fenced Markdown prompt example for contract review. They do not invoke Ruby, a shell, or external commands.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:29:ruby-shell-backtick-execution","reason":"Line 29 closes the Markdown prompt example and is not executable syntax in this skill context. No command execution path is present.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:33:ruby-shell-backtick-execution","reason":"Line 33 documents memory files and a related skill link. Inline backticks mark paths and names as prose, not shell substitution.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:34:ruby-shell-backtick-execution","reason":"Line 34 documents where a draft or review memo should be saved. The backticked path is an internal memory convention, not command execution.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:35:ruby-shell-backtick-execution","reason":"Line 35 names an internal hot-cache Markdown file in prose. There is no shell command or executable operation.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:52:ruby-shell-backtick-execution","reason":"Line 52 names an optional CRM placeholder connector using Markdown backticks. It is a declarative integration placeholder, not a command.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:53:ruby-shell-backtick-execution","reason":"Line 53 names an optional influencer database placeholder connector. The backticks are formatting and no external command is invoked.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:54:ruby-shell-backtick-execution","reason":"Line 54 names an optional e-signature placeholder connector. It describes possible workflow support, not command execution.","verdict":"false_positive","confidence":0.93},{"id":"external_commands:SKILL.md:67:ruby-shell-backtick-execution","reason":"Line 67 instructs saving a Markdown memo to a fixed memory path and updating a roster handoff file. This is file-output guidance, not Ruby or shell execution.","verdict":"false_positive","confidence":0.93},{"id":"network:SKILL.md:10:hardcoded-url","reason":"Line 10 is the skill homepage URL in frontmatter metadata. It is not used for fetching data or sending user information.","verdict":"false_positive","confidence":0.93},{"id":"network:SKILL.md:13:hardcoded-url","reason":"Line 13 embeds the same repository homepage inside metadata. This is static attribution metadata, not a network call.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:33:path-traversal-sequence","reason":"Line 33 refers to repository-relative documentation and memory records for creator context. It does not accept arbitrary paths or instruct traversal outside the expected skill repository context.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:40:path-traversal-sequence","reason":"Line 40 links to a sibling skill using a normal relative Markdown link. This is documentation navigation, not a filesystem access primitive.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:44:path-traversal-sequence","reason":"Line 44 links to a shared reference document in the repository. The relative path is static documentation and not user-controlled traversal.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:56:path-traversal-sequence","reason":"Line 56 links to CONNECTORS.md for optional connector recipes. It is a static internal documentation link, not arbitrary filesystem access.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:67:path-traversal-sequence","reason":"Line 67 saves output to a fixed memory namespace and links to a protocol skill. The path is bounded by the skill workflow and not a traversal attack.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:78:path-traversal-sequence","reason":"Line 78 lists a shared contract reference with a static relative Markdown link. It does not instruct reading arbitrary files.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:79:path-traversal-sequence","reason":"Line 79 lists a shared state-model reference with a static relative Markdown link. This is repository documentation, not dangerous path traversal.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:80:path-traversal-sequence","reason":"Line 80 lists CONNECTORS.md with a static relative Markdown link. No user input controls the target path.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:81:path-traversal-sequence","reason":"Line 81 lists sibling skills through static relative Markdown links. This is cross-skill documentation, not a filesystem exploit.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:85:path-traversal-sequence","reason":"Line 85 links to the content-amplifier sibling skill. The relative path is static and used for handoff guidance only.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:88:path-traversal-sequence","reason":"Line 88 links to the content-reviewer sibling skill. It is a safe Markdown reference with no arbitrary file operation.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:89:path-traversal-sequence","reason":"Line 89 links to the outreach-manager sibling skill. This is static documentation and not path traversal behavior.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:95:path-traversal-sequence","reason":"Line 95 lists outreach-manager as a related skill via a static relative link. There is no untrusted path composition.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:96:path-traversal-sequence","reason":"Line 96 lists brief-generator via a static relative link. It is repository navigation, not a read/write instruction to escape a sandbox.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:97:path-traversal-sequence","reason":"Line 97 lists content-reviewer via a static relative link. The path is fixed documentation, not malicious traversal.","verdict":"false_positive","confidence":0.93},{"id":"filesystem:SKILL.md:98:path-traversal-sequence","reason":"Line 98 lists budget-optimizer via a static relative link. It does not create or follow a user-controlled filesystem path.","verdict":"false_positive","confidence":0.93},{"id":"blocker:SKILL.md:85:system-reconnaissance","reason":"Line 85 is next-skill handoff guidance after a contract is signed. It does not enumerate system state or collect operational environment data.","verdict":"false_positive","confidence":0.93},{"id":"blocker:SKILL.md:97:network-reconnaissance","reason":"Lines 97-98 list related internal skills for approval workflow and compensation terms. They contain no network scanning, external probing, or data collection.","verdict":"false_positive","confidence":0.93}],"semantic_findings":[],"subject_marketplace_commit_sha":null,"subject_content_hash":null,"subject_tree_hash":null,"subject_plugin_path":null,"audit_payload_hash":null,"confirmed_risk_level":null,"scanner_version":null,"policy_version":null,"subject":{"marketplaceCommitSha":null,"contentHash":null,"treeHash":null,"pluginPath":null,"auditPayloadHash":null},"scannerVersion":null,"policyVersion":null},"auditTranslation":null,"localization":{"requestedLocale":"en","contentLocale":"en","availableLocales":["en"],"fallbackToEnglish":false},"attestation":{"availability":"not_attestable","url":null,"status":null,"reason":"confirmed_risk_level does not match the canonical trust resolver"},"trust":{"publicState":"public","auditState":"complete","auditCurrentness":null,"confirmedRiskLevel":"safe","confirmedFindingCount":0,"capabilityReviewCount":0,"needsReviewCount":0,"falsePositiveCount":0,"agentAutoInstallPolicy":"allowed","manualInstallPolicy":"allowed","artifactSignatureState":"available","attestationState":"not_attestable","verificationState":"not_verified"},"isLatest":false}}