{"data":{"skill":{"slug":"atri10-executor-architecture","name":"executor-architecture","icon":"📦","repo":"https://github.com/atri10/executor/tree/39ddcfe1d9f3497102622b72aa235fb0770187fe/skills/executor-architecture","status":"approved","author":"atri10","authorVersion":null,"skillstoreRevision":1},"audit":{"id":"be1841a0-dfd1-41bb-bffc-29d014be9153","skill_id":"ebff7603-01ee-4be7-8af4-c4ece2bac430","version":1,"content_hash":"v3:6d0b11444384184b7ae743742a7e233a9a705cd9:9462c89079993eb2dbacc254aad11fa6b986292f879da45725ecc307dbf9234b:cd1cf0b4d5a2d3cc5bf8d3dc8da99597964cc8c6147a69672e517af921e5352b:736b696c6c732f6174726931302f6578656375746f722d617263686974656374757265:0a04652141c13eefc522b628ad60d4a7","risk_level":"medium","is_blocked":false,"safe_to_publish":true,"analysis_status":"ok","agent_auto_install_policy":"allowed","manual_install_policy":"allowed","summary":"Most alerts are Markdown formatting, fixed sibling paths, or document identifiers rather than executable backticks, path traversal exploits, or reconnaissance. Required helper executions remain confirmed with low confidence because their implementations are outside the five reviewed files. Verification can record a passed phase before human approval; no evidence found of exfiltration, credential theft, or audit-directed prompt injection.","remediation":[{"issue":"Required helper implementations are outside the reviewed skill package.","severity":"medium","suggestion":"Declare and pin the helper dependency, include its implementations in the audit scope, and verify trusted repository paths before execution."},{"issue":"Verification instructs recording architecture approval before the human gate.","severity":"medium","suggestion":"Use read-only validation before the gate. Record a passed phase only after explicit human approval, and require approval evidence for that transition."}],"risk_factor_evidence":[{"factor":"filesystem","evidence":[{"file":"references/adr-template.md","line_end":7,"line_start":7},{"file":"references/arch-template.md","line_end":7,"line_start":7},{"file":"references/design-template.md","line_end":8,"line_start":8},{"file":"references/interface-template.md","line_end":7,"line_start":7},{"file":"SKILL.md","line_end":15,"line_start":15},{"file":"SKILL.md","line_end":19,"line_start":19},{"file":"SKILL.md","line_end":50,"line_start":50},{"file":"SKILL.md","line_end":51,"line_start":51},{"file":"SKILL.md","line_end":79,"line_start":79},{"file":"SKILL.md","line_end":101,"line_start":101},{"file":"SKILL.md","line_end":120,"line_start":120},{"file":"SKILL.md","line_end":129,"line_start":129},{"file":"SKILL.md","line_end":169,"line_start":169},{"file":"SKILL.md","line_end":180,"line_start":180},{"file":"SKILL.md","line_end":181,"line_start":181},{"file":"SKILL.md","line_end":190,"line_start":190},{"file":"SKILL.md","line_end":196,"line_start":196},{"file":"SKILL.md","line_end":288,"line_start":288},{"file":"SKILL.md","line_end":343,"line_start":343},{"file":"SKILL.md","line_end":357,"line_start":357},{"file":"SKILL.md","line_end":400,"line_start":400},{"file":"SKILL.md","line_end":413,"line_start":413},{"file":"SKILL.md","line_end":420,"line_start":420},{"file":"SKILL.md","line_end":422,"line_start":422}]},{"factor":"external_commands","evidence":[{"file":"SKILL.md","line_end":15,"line_start":15},{"file":"SKILL.md","line_end":19,"line_start":19},{"file":"SKILL.md","line_end":27,"line_start":27},{"file":"SKILL.md","line_end":28,"line_start":28},{"file":"SKILL.md","line_end":29,"line_start":29},{"file":"SKILL.md","line_end":30,"line_start":30},{"file":"SKILL.md","line_end":41,"line_start":41},{"file":"SKILL.md","line_end":42,"line_start":42},{"file":"SKILL.md","line_end":43,"line_start":43},{"file":"SKILL.md","line_end":52,"line_start":49},{"file":"SKILL.md","line_end":54,"line_start":52},{"file":"SKILL.md","line_end":55,"line_start":54},{"file":"SKILL.md","line_end":55,"line_start":55},{"file":"SKILL.md","line_end":80,"line_start":78},{"file":"SKILL.md","line_end":82,"line_start":80},{"file":"SKILL.md","line_end":100,"line_start":82},{"file":"SKILL.md","line_end":102,"line_start":100},{"file":"SKILL.md","line_end":104,"line_start":102},{"file":"SKILL.md","line_end":108,"line_start":104},{"file":"SKILL.md","line_end":110,"line_start":108},{"file":"SKILL.md","line_end":119,"line_start":110},{"file":"SKILL.md","line_end":121,"line_start":119},{"file":"SKILL.md","line_end":125,"line_start":121},{"file":"SKILL.md","line_end":129,"line_start":125},{"file":"SKILL.md","line_end":133,"line_start":129},{"file":"SKILL.md","line_end":133,"line_start":133},{"file":"SKILL.md","line_end":134,"line_start":134},{"file":"SKILL.md","line_end":135,"line_start":135},{"file":"SKILL.md","line_end":136,"line_start":136},{"file":"SKILL.md","line_end":139,"line_start":138},{"file":"SKILL.md","line_end":141,"line_start":139},{"file":"SKILL.md","line_end":144,"line_start":141},{"file":"SKILL.md","line_end":144,"line_start":144},{"file":"SKILL.md","line_end":148,"line_start":146},{"file":"SKILL.md","line_end":150,"line_start":148},{"file":"SKILL.md","line_end":153,"line_start":150},{"file":"SKILL.md","line_end":153,"line_start":153},{"file":"SKILL.md","line_end":162,"line_start":162},{"file":"SKILL.md","line_end":166,"line_start":166},{"file":"SKILL.md","line_end":170,"line_start":168},{"file":"SKILL.md","line_end":179,"line_start":170},{"file":"SKILL.md","line_end":182,"line_start":179},{"file":"SKILL.md","line_end":189,"line_start":182},{"file":"SKILL.md","line_end":191,"line_start":189},{"file":"SKILL.md","line_end":195,"line_start":191},{"file":"SKILL.md","line_end":197,"line_start":195},{"file":"SKILL.md","line_end":245,"line_start":197},{"file":"SKILL.md","line_end":261,"line_start":245},{"file":"SKILL.md","line_end":262,"line_start":261},{"file":"SKILL.md","line_end":274,"line_start":262}]}],"critical_findings":[],"high_findings":[],"medium_findings":[{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":52,"line_start":49}],"confidence":0.45,"description":"```bash","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The fenced block instructs executing a sibling helper to resolve an initiative and mutate its phase log. Its implementation is unavailable, so execution safety remains uncertain."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":80,"line_start":78}],"confidence":0.45,"description":"```bash","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The block requires executing the sibling architecture ID allocator. Its source is outside this package, so its filesystem effects and execution safety cannot be verified."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":102,"line_start":100}],"confidence":0.45,"description":"```bash","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The block requires executing the sibling ADR ID allocator. Its source is unavailable, so its filesystem effects and execution safety cannot be verified."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":121,"line_start":119}],"confidence":0.45,"description":"```bash","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The block requires executing the sibling interface ID allocator. Its implementation is outside this package, so execution safety cannot be verified."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":170,"line_start":168}],"confidence":0.45,"description":"```bash","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The block invokes a sibling helper to persist a passed architecture phase after approval. The helper implementation is unavailable, leaving execution effects uncertain."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":182,"line_start":179}],"confidence":0.45,"description":"```bash","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The block requires sibling helpers for design phase entry and ID allocation. Their implementations are unavailable, so execution safety cannot be verified."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":191,"line_start":189}],"confidence":0.45,"description":"```bash","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The block invokes a sibling helper to persist design approval. Its implementation is unavailable, so its execution effects cannot be independently verified."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":197,"line_start":195}],"confidence":0.45,"description":"```bash","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The block invokes a sibling helper to persist a skipped design phase. Its implementation is unavailable, leaving filesystem and execution effects uncertain."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":288,"line_start":288}],"confidence":0.45,"description":"| `frozen` | A plan is executing against it | Do **not** edit. Write a new IFCE that supersedes it, ","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The frozen-interface rule instructs executing a sibling ruling helper with plan and decision arguments. Its implementation and argument handling are unavailable, so execution safety remains uncertain."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":347,"line_start":343}],"confidence":0.45,"description":"`../executor/scripts/exec-initiative phase INIT-0004 design skipped \"<reason>\"`","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"This instruction invokes a sibling phase-log helper with a supplied reason. The implementation and argument handling are unavailable, leaving execution safety uncertain."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":358,"line_start":357}],"confidence":0.45,"description":"1. Allocate a new ID: `../executor/scripts/exec-id INIT-0004 ADR`.","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The supersession procedure requires executing the sibling ADR allocator. Its implementation is outside the reviewed package, so execution safety cannot be verified."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":414,"line_start":413}],"confidence":0.45,"description":"1. `../executor/scripts/exec-store-check` — no finding for this","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"Verification requires executing the sibling store-check helper. Its source is unavailable, so claimed validation behavior and execution safety cannot be verified."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":422,"line_start":420}],"confidence":0.45,"description":"4. `../executor/scripts/exec-scan-secrets docs/executor/<INIT>-<slug>/architecture`","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"Verification requires running a sibling helper over architecture documents to scan secrets. Its unavailable implementation could access document contents, so safety cannot be established."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":427,"line_start":422}],"confidence":0.45,"description":"5. `../executor/scripts/exec-initiative phase <INIT> architecture passed \"...\"`","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"Verification invokes a sibling helper that records a passed architecture phase. Its implementation is unavailable; the separate semantic finding addresses premature approval recording."},{"title":"Verification Can Record Approval Before Human Review","locations":[{"file":"SKILL.md","line_end":175,"line_start":156},{"file":"SKILL.md","line_end":423,"line_start":409}],"confidence":0.91,"description":"Verification says \"Run these in this session and cite their output at the gate\" and includes a command recording architecture as passed. This conflicts with \"On approval\" and the instruction to stop at the gate. An agent could record unapproved architecture as accepted, weakening downstream approval controls.","review_kind":"security","source_category":"semantic","source_severity":"medium","confidence_reasoning":"The pre-gate verification list explicitly includes a passed-state mutation, while the procedure requires prior human approval. Actual enforcement cannot be checked without the helper implementation."}],"low_findings":[],"dangerous_patterns":[],"files_scanned":5,"total_lines":1191,"audit_model":"codex","audited_at":"2026-10-05T16:54:58.111+00:00","created_at":"2026-10-06T06:51:23.743304+00:00","static_findings":[{"id":"filesystem:references/adr-template.md:7:path-traversal-sequence","file":"references/adr-template.md","pattern":"Path traversal sequence","snippet":"`../../executor/scripts/exec-id INIT-NNNN ADR`","category":"filesystem","line_end":7,"severity":"high","line_start":7},{"id":"blocker:references/adr-template.md:7:system-reconnaissance","file":"references/adr-template.md","pattern":"System reconnaissance","snippet":"`../../executor/scripts/exec-id INIT-NNNN ADR`","category":"blocker","line_end":7,"severity":"low","line_start":7},{"id":"filesystem:references/arch-template.md:7:path-traversal-sequence","file":"references/arch-template.md","pattern":"Path traversal sequence","snippet":"`../../executor/scripts/exec-id INIT-NNNN ARCH`","category":"filesystem","line_end":7,"severity":"high","line_start":7},{"id":"blocker:references/arch-template.md:7:system-reconnaissance","file":"references/arch-template.md","pattern":"System reconnaissance","snippet":"`../../executor/scripts/exec-id INIT-NNNN ARCH`","category":"blocker","line_end":7,"severity":"low","line_start":7},{"id":"blocker:references/arch-template.md:93:system-reconnaissance","file":"references/arch-template.md","pattern":"System reconnaissance","snippet":"```mermaid","category":"blocker","line_end":94,"severity":"low","line_start":93},{"id":"filesystem:references/design-template.md:8:path-traversal-sequence","file":"references/design-template.md","pattern":"Path traversal sequence","snippet":"`../../executor/scripts/exec-id INIT-NNNN DSGN`","category":"filesystem","line_end":8,"severity":"high","line_start":8},{"id":"blocker:references/design-template.md:8:system-reconnaissance","file":"references/design-template.md","pattern":"System reconnaissance","snippet":"`../../executor/scripts/exec-id INIT-NNNN DSGN`","category":"blocker","line_end":8,"severity":"low","line_start":8},{"id":"filesystem:references/interface-template.md:7:path-traversal-sequence","file":"references/interface-template.md","pattern":"Path traversal sequence","snippet":"`../../executor/scripts/exec-id INIT-NNNN IFCE`","category":"filesystem","line_end":7,"severity":"high","line_start":7},{"id":"blocker:references/interface-template.md:7:system-reconnaissance","file":"references/interface-template.md","pattern":"System reconnaissance","snippet":"`../../executor/scripts/exec-id INIT-NNNN IFCE`","category":"blocker","line_end":7,"severity":"low","line_start":7},{"id":"external_commands:SKILL.md:15:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Read [`../executor/SKILL.md`](../executor/SKILL.md) and its four references","category":"external_commands","line_end":15,"severity":"medium","line_start":15},{"id":"external_commands:SKILL.md:19:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Scripts live in [`../executor/scripts/`](../executor/scripts/) and are","category":"external_commands","line_end":19,"severity":"medium","line_start":19},{"id":"external_commands:SKILL.md:27:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| Architecture | `INIT-NNNN-ARCH-nn` | `architecture/` | [arch-template.md](references/arch-template","category":"external_commands","line_end":27,"severity":"medium","line_start":27},{"id":"external_commands:SKILL.md:28:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| Decision | `INIT-NNNN-ADR-nn` | `architecture/` | [adr-template.md](references/adr-template.md) | ","category":"external_commands","line_end":28,"severity":"medium","line_start":28},{"id":"external_commands:SKILL.md:29:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| Interface | `INIT-NNNN-IFCE-nn` | `architecture/` | [interface-template.md](references/interface-t","category":"external_commands","line_end":29,"severity":"medium","line_start":29},{"id":"external_commands:SKILL.md:30:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| Design | `INIT-NNNN-DSGN-nn` | `design/` | [design-template.md](references/design-template.md) | O","category":"external_commands","line_end":30,"severity":"medium","line_start":30},{"id":"external_commands:SKILL.md:41:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| The initiative folder exists and the charter states goals, non-goals, and success criteria | Route","category":"external_commands","line_end":41,"severity":"medium","line_start":41},{"id":"external_commands:SKILL.md:42:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| Discovery produced an `OPTS` document with a recommendation the human accepted, **or** the charter","category":"external_commands","line_end":42,"severity":"medium","line_start":42},{"id":"external_commands:SKILL.md:43:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| The intake and discovery phase-log rows show `Gate passed` (or `skipped`) | Do not proceed on an u","category":"external_commands","line_end":43,"severity":"medium","line_start":43},{"id":"external_commands:SKILL.md:49:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":52,"severity":"medium","line_start":49},{"id":"external_commands:SKILL.md:52:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":54,"severity":"medium","line_start":52},{"id":"external_commands:SKILL.md:54:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Read, in this order: `charter.md` (problem, success criteria, constraints,","category":"external_commands","line_end":55,"severity":"medium","line_start":54},{"id":"external_commands:SKILL.md:55:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"scope boundaries), the accepted `OPTS` document, then any `RSCH` note whose","category":"external_commands","line_end":55,"severity":"medium","line_start":55},{"id":"external_commands:SKILL.md:78:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":80,"severity":"medium","line_start":78},{"id":"external_commands:SKILL.md:80:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":82,"severity":"medium","line_start":80},{"id":"external_commands:SKILL.md:82:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Write to `architecture/INIT-0004-ARCH-01-<slug>.md` following","category":"external_commands","line_end":100,"severity":"medium","line_start":82},{"id":"external_commands:SKILL.md:100:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":102,"severity":"medium","line_start":100},{"id":"external_commands:SKILL.md:102:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":104,"severity":"medium","line_start":102},{"id":"external_commands:SKILL.md:104:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Every ADR carries a falsifier and a `reversibility`. See","category":"external_commands","line_end":108,"severity":"medium","line_start":104},{"id":"external_commands:SKILL.md:108:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"**A decision made in this phase is an ADR, never a ruling.** `exec-ruling`","category":"external_commands","line_end":110,"severity":"medium","line_start":108},{"id":"external_commands:SKILL.md:110:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"it requires a plan file because `rulings.md` is per-plan. In architecture the","category":"external_commands","line_end":119,"severity":"medium","line_start":110},{"id":"external_commands:SKILL.md:119:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":121,"severity":"medium","line_start":119},{"id":"external_commands:SKILL.md:121:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":125,"severity":"medium","line_start":121},{"id":"external_commands:SKILL.md:125:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`stability`. See [Interfaces](#interfaces-the-highest-leverage-document).","category":"external_commands","line_end":129,"severity":"medium","line_start":125},{"id":"external_commands:SKILL.md:129:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Frontmatter, per [`../executor/references/frontmatter.md`](../executor/references/frontmatter.md):","category":"external_commands","line_end":133,"severity":"medium","line_start":129},{"id":"external_commands:SKILL.md:133:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| ARCH | `components: [...]`, `interfaces: [INIT-0004-IFCE-01]`, `decisions: [INIT-0004-ADR-01, ...]","category":"external_commands","line_end":133,"severity":"medium","line_start":133},{"id":"external_commands:SKILL.md:134:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| ADR | `informs: [...]`, `reversibility:`, `alternatives_considered:`, `consequences_accepted:` |","category":"external_commands","line_end":134,"severity":"medium","line_start":134},{"id":"external_commands:SKILL.md:135:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| IFCE | `provides: [...]`, `consumers: [...]`, `stability:` |","category":"external_commands","line_end":135,"severity":"medium","line_start":135},{"id":"external_commands:SKILL.md:136:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| DSGN | `component:`, `implements: [INIT-0004-ARCH-01]`, `interfaces: [INIT-0004-IFCE-01]` |","category":"external_commands","line_end":136,"severity":"medium","line_start":136},{"id":"external_commands:SKILL.md:138:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Then run the contract's five validation checks (`id` matches filename,","category":"external_commands","line_end":139,"severity":"medium","line_start":138},{"id":"external_commands:SKILL.md:139:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`initiative` matches folder, every cited ID starts with this initiative,","category":"external_commands","line_end":141,"severity":"medium","line_start":139},{"id":"external_commands:SKILL.md:141:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"a row per document to the initiative's `INDEX.md` **Documents** table in the","category":"external_commands","line_end":144,"severity":"medium","line_start":141},{"id":"external_commands:SKILL.md:144:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`created_at` / `updated_at` come from a real command:","category":"external_commands","line_end":144,"severity":"medium","line_start":144},{"id":"external_commands:SKILL.md:146:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":148,"severity":"medium","line_start":146},{"id":"external_commands:SKILL.md:148:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":150,"severity":"medium","line_start":148},{"id":"external_commands:SKILL.md:150:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"**Citation rule, absolute:** no document inside `INIT-0004` may cite an ID","category":"external_commands","line_end":153,"severity":"medium","line_start":150},{"id":"external_commands:SKILL.md:153:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`depends_on` in the charter and initiative `INDEX.md`. An initiative must stay","category":"external_commands","line_end":153,"severity":"medium","line_start":153},{"id":"external_commands:SKILL.md:162:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`one-way` or `two-way`.","category":"external_commands","line_end":162,"severity":"medium","line_start":162},{"id":"external_commands:SKILL.md:166:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"On approval, flip document `status: draft` → `active` and close the phase:","category":"external_commands","line_end":166,"severity":"medium","line_start":166},{"id":"external_commands:SKILL.md:168:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":170,"severity":"medium","line_start":168},{"id":"external_commands:SKILL.md:170:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":179,"severity":"medium","line_start":170},{"id":"external_commands:SKILL.md:179:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":182,"severity":"medium","line_start":179},{"id":"external_commands:SKILL.md:182:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":189,"severity":"medium","line_start":182},{"id":"external_commands:SKILL.md:189:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":191,"severity":"medium","line_start":189},{"id":"external_commands:SKILL.md:191:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":195,"severity":"medium","line_start":191},{"id":"external_commands:SKILL.md:195:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":197,"severity":"medium","line_start":195},{"id":"external_commands:SKILL.md:197:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":245,"severity":"medium","line_start":197},{"id":"external_commands:SKILL.md:245:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`reversibility: one-way|two-way` is a frontmatter field with teeth.","category":"external_commands","line_end":261,"severity":"medium","line_start":245},{"id":"external_commands:SKILL.md:261:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`placeCell(tenant, region)` returning a cell id; Task 5 calls","category":"external_commands","line_end":262,"severity":"medium","line_start":261},{"id":"external_commands:SKILL.md:262:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`place_cell(tenantId)` expecting a result object. Both pass their own tests.","category":"external_commands","line_end":274,"severity":"medium","line_start":262},{"id":"external_commands:SKILL.md:274:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| `stability: draft` \\| `stable` \\| `frozen` | Tells a consumer whether they may build against it no","category":"external_commands","line_end":274,"severity":"medium","line_start":274},{"id":"external_commands:SKILL.md:286:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| `draft` | Architecture in progress | Edit freely; nothing depends on it yet |","category":"external_commands","line_end":287,"severity":"medium","line_start":286},{"id":"external_commands:SKILL.md:287:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| `stable` | Gate passed, plans may be written against it | Update every named consumer in the same ","category":"external_commands","line_end":288,"severity":"medium","line_start":287},{"id":"external_commands:SKILL.md:288:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| `frozen` | A plan is executing against it | Do **not** edit. Write a new IFCE that supersedes it, ","category":"external_commands","line_end":288,"severity":"medium","line_start":288},{"id":"external_commands:SKILL.md:340:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"1. Add the phase to the charter's `skipped_phases`, with the reason in the","category":"external_commands","line_end":343,"severity":"medium","line_start":340},{"id":"external_commands:SKILL.md:343:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`../executor/scripts/exec-initiative phase INIT-0004 design skipped \"<reason>\"`","category":"external_commands","line_end":347,"severity":"medium","line_start":343},{"id":"external_commands:SKILL.md:347:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"the `skipped` row.","category":"external_commands","line_end":357,"severity":"medium","line_start":347},{"id":"external_commands:SKILL.md:357:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"1. Allocate a new ID: `../executor/scripts/exec-id INIT-0004 ADR`.","category":"external_commands","line_end":358,"severity":"medium","line_start":357},{"id":"external_commands:SKILL.md:358:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"2. Write the new ADR with `supersedes: INIT-0004-ADR-03`. Its context section","category":"external_commands","line_end":361,"severity":"medium","line_start":358},{"id":"external_commands:SKILL.md:361:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"3. Edit the old document's **frontmatter only** — `status: superseded`,","category":"external_commands","line_end":362,"severity":"medium","line_start":361},{"id":"external_commands:SKILL.md:362:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`superseded_by: INIT-0004-ADR-07`, `updated_at:`. The body stays exactly","category":"external_commands","line_end":362,"severity":"medium","line_start":362},{"id":"external_commands:SKILL.md:364:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"4. Update both rows in the initiative's `INDEX.md`.","category":"external_commands","line_end":365,"severity":"medium","line_start":364},{"id":"external_commands:SKILL.md:365:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"5. Repoint anything whose `decisions:` field names the old ADR (ARCH, SPEC),","category":"external_commands","line_end":369,"severity":"medium","line_start":365},{"id":"external_commands:SKILL.md:369:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"The same rule governs ARCH, IFCE, and DSGN. A `frozen` interface is","category":"external_commands","line_end":392,"severity":"medium","line_start":369},{"id":"external_commands:SKILL.md:392:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`reversibility` that matches the scrutiny actually applied.","category":"external_commands","line_end":400,"severity":"medium","line_start":392},{"id":"external_commands:SKILL.md:400:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"[`../executor/references/safety.md`](../executor/references/safety.md).","category":"external_commands","line_end":413,"severity":"medium","line_start":400},{"id":"external_commands:SKILL.md:413:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"1. `../executor/scripts/exec-store-check` — no finding for this","category":"external_commands","line_end":414,"severity":"medium","line_start":413},{"id":"external_commands:SKILL.md:414:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"initiative; D8 requires every ARCH to carry a top-level `mermaid`","category":"external_commands","line_end":416,"severity":"medium","line_start":414},{"id":"external_commands:SKILL.md:416:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"2. `rg -n 'INIT-[0-9]{4}' architecture/` — every ID belongs to this","category":"external_commands","line_end":418,"severity":"medium","line_start":416},{"id":"external_commands:SKILL.md:418:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"3. For each IFCE: count its `provides:` entries against the operations it","category":"external_commands","line_end":420,"severity":"medium","line_start":418},{"id":"external_commands:SKILL.md:420:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"4. `../executor/scripts/exec-scan-secrets docs/executor/<INIT>-<slug>/architecture`","category":"external_commands","line_end":422,"severity":"medium","line_start":420},{"id":"external_commands:SKILL.md:422:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"5. `../executor/scripts/exec-initiative phase <INIT> architecture passed \"...\"`","category":"external_commands","line_end":427,"severity":"medium","line_start":422},{"id":"external_commands:SKILL.md:427:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`executor-spec` reads your output as the contract it argues from: the ARCH for","category":"external_commands","line_end":438,"severity":"medium","line_start":427},{"id":"external_commands:SKILL.md:438:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| \"The interface is obvious from the task description\" | Then write it down in one minute. Obvious-t","category":"external_commands","line_end":438,"severity":"medium","line_start":438},{"id":"external_commands:SKILL.md:441:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| \"I'll fix the old ADR so it reads correctly\" | You have deleted the reasoning that justifies the n","category":"external_commands","line_end":442,"severity":"medium","line_start":441},{"id":"filesystem:SKILL.md:15:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"Read [`../executor/SKILL.md`](../executor/SKILL.md) and its four references","category":"filesystem","line_end":15,"severity":"high","line_start":15},{"id":"filesystem:SKILL.md:19:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"Scripts live in [`../executor/scripts/`](../executor/scripts/) and are","category":"filesystem","line_end":19,"severity":"high","line_start":19},{"id":"filesystem:SKILL.md:50:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-initiative resolve INIT-0004","category":"filesystem","line_end":50,"severity":"high","line_start":50},{"id":"filesystem:SKILL.md:51:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-initiative phase INIT-0004 architecture entered","category":"filesystem","line_end":51,"severity":"high","line_start":51},{"id":"filesystem:SKILL.md:79:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-id INIT-0004 ARCH        # -> INIT-0004-ARCH-01","category":"filesystem","line_end":79,"severity":"high","line_start":79},{"id":"filesystem:SKILL.md:101:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-id INIT-0004 ADR         # -> INIT-0004-ADR-01","category":"filesystem","line_end":101,"severity":"high","line_start":101},{"id":"filesystem:SKILL.md:120:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-id INIT-0004 IFCE        # -> INIT-0004-IFCE-01","category":"filesystem","line_end":120,"severity":"high","line_start":120},{"id":"filesystem:SKILL.md:129:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"Frontmatter, per [`../executor/references/frontmatter.md`](../executor/references/frontmatter.md):","category":"filesystem","line_end":129,"severity":"high","line_start":129},{"id":"filesystem:SKILL.md:169:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-initiative phase INIT-0004 architecture passed \"2 ADRs, 1 interface\"","category":"filesystem","line_end":169,"severity":"high","line_start":169},{"id":"filesystem:SKILL.md:180:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-initiative phase INIT-0004 design entered","category":"filesystem","line_end":180,"severity":"high","line_start":180},{"id":"filesystem:SKILL.md:181:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-id INIT-0004 DSGN        # -> INIT-0004-DSGN-01","category":"filesystem","line_end":181,"severity":"high","line_start":181},{"id":"filesystem:SKILL.md:190:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-initiative phase INIT-0004 design passed \"router + admission control\"","category":"filesystem","line_end":190,"severity":"high","line_start":190},{"id":"filesystem:SKILL.md:196:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-initiative phase INIT-0004 design skipped \"single component, internals fold","category":"filesystem","line_end":196,"severity":"high","line_start":196},{"id":"filesystem:SKILL.md:288:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"| `frozen` | A plan is executing against it | Do **not** edit. Write a new IFCE that supersedes it, ","category":"filesystem","line_end":288,"severity":"high","line_start":288},{"id":"filesystem:SKILL.md:343:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"`../executor/scripts/exec-initiative phase INIT-0004 design skipped \"<reason>\"`","category":"filesystem","line_end":343,"severity":"high","line_start":343},{"id":"filesystem:SKILL.md:357:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"1. Allocate a new ID: `../executor/scripts/exec-id INIT-0004 ADR`.","category":"filesystem","line_end":357,"severity":"high","line_start":357},{"id":"filesystem:SKILL.md:400:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"[`../executor/references/safety.md`](../executor/references/safety.md).","category":"filesystem","line_end":400,"severity":"high","line_start":400},{"id":"filesystem:SKILL.md:413:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"1. `../executor/scripts/exec-store-check` — no finding for this","category":"filesystem","line_end":413,"severity":"high","line_start":413},{"id":"filesystem:SKILL.md:420:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"4. `../executor/scripts/exec-scan-secrets docs/executor/<INIT>-<slug>/architecture`","category":"filesystem","line_end":420,"severity":"high","line_start":420},{"id":"filesystem:SKILL.md:422:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"5. `../executor/scripts/exec-initiative phase <INIT> architecture passed \"...\"`","category":"filesystem","line_end":422,"severity":"high","line_start":422},{"id":"blocker:SKILL.md:79:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"../executor/scripts/exec-id INIT-0004 ARCH        # -> INIT-0004-ARCH-01","category":"blocker","line_end":79,"severity":"low","line_start":79},{"id":"blocker:SKILL.md:101:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"../executor/scripts/exec-id INIT-0004 ADR         # -> INIT-0004-ADR-01","category":"blocker","line_end":101,"severity":"low","line_start":101},{"id":"blocker:SKILL.md:120:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"../executor/scripts/exec-id INIT-0004 IFCE        # -> INIT-0004-IFCE-01","category":"blocker","line_end":120,"severity":"low","line_start":120},{"id":"blocker:SKILL.md:164:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"4. What you did **not** produce and why.","category":"blocker","line_end":164,"severity":"low","line_start":164},{"id":"blocker:SKILL.md:181:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"../executor/scripts/exec-id INIT-0004 DSGN        # -> INIT-0004-DSGN-01","category":"blocker","line_end":181,"severity":"low","line_start":181},{"id":"blocker:SKILL.md:357:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"1. Allocate a new ID: `../executor/scripts/exec-id INIT-0004 ADR`.","category":"blocker","line_end":357,"severity":"low","line_start":357}],"finding_verdicts":[{"id":"filesystem:references/adr-template.md:7:path-traversal-sequence","reason":"The fixed relative path names the sibling ID allocator for an ADR. No attacker-controlled path or sensitive-file traversal is shown.","verdict":"false_positive","confidence":0.96},{"id":"blocker:references/adr-template.md:7:system-reconnaissance","reason":"The command allocates a document identifier using an initiative and artifact kind. It is not the operating-system id command or a host-enumeration instruction.","verdict":"false_positive","confidence":0.97},{"id":"filesystem:references/arch-template.md:7:path-traversal-sequence","reason":"The fixed relative path names the sibling ID allocator for an architecture document. No attacker-controlled path or sensitive-file traversal is shown.","verdict":"false_positive","confidence":0.96},{"id":"blocker:references/arch-template.md:7:system-reconnaissance","reason":"The command requests an architecture document identifier, not operating-system identity information. The surrounding template explicitly describes ID allocation.","verdict":"false_positive","confidence":0.97},{"id":"blocker:references/arch-template.md:93:system-reconnaissance","reason":"This is a Mermaid flowchart fence describing component boundaries. It contains no command for discovering host or user information.","verdict":"false_positive","confidence":1},{"id":"filesystem:references/design-template.md:8:path-traversal-sequence","reason":"The fixed relative path names the sibling ID allocator for a design document. No attacker-controlled path or sensitive-file traversal is shown.","verdict":"false_positive","confidence":0.96},{"id":"blocker:references/design-template.md:8:system-reconnaissance","reason":"The template requests a design document identifier using an initiative and artifact kind. It does not request host reconnaissance.","verdict":"false_positive","confidence":0.97},{"id":"filesystem:references/interface-template.md:7:path-traversal-sequence","reason":"The fixed relative path names the sibling ID allocator for an interface document. No attacker-controlled path or sensitive-file traversal is shown.","verdict":"false_positive","confidence":0.96},{"id":"blocker:references/interface-template.md:7:system-reconnaissance","reason":"The template requests an interface document identifier, not operating-system identity information. Its purpose is stated immediately above the command.","verdict":"false_positive","confidence":0.97},{"id":"external_commands:SKILL.md:15:ruby-shell-backtick-execution","reason":"Backticks format a Markdown link to prerequisite documentation. Reading that document is not shell or Ruby backtick execution.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:19:ruby-shell-backtick-execution","reason":"This line formats a directory link and states where helpers live. It does not execute a command; actual helper invocations are evaluated separately.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:27:ruby-shell-backtick-execution","reason":"The table formats an architecture identifier and output directory as inline code. Neither is an executable backtick expression.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:28:ruby-shell-backtick-execution","reason":"The table formats an ADR identifier and output directory as inline code. Neither is an executable backtick expression.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:29:ruby-shell-backtick-execution","reason":"The table formats an interface identifier and output directory as inline code. Neither is an executable backtick expression.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:30:ruby-shell-backtick-execution","reason":"The table formats a design identifier and output directory as inline code. Neither is an executable backtick expression.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:41:ruby-shell-backtick-execution","reason":"The precondition routes missing initiative setup to another skill. Its backticks label that skill, not a shell expression.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:42:ruby-shell-backtick-execution","reason":"OPTS and skipped_phases are document and metadata labels in a precondition. The line contains no executable command.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:43:ruby-shell-backtick-execution","reason":"Gate passed and skipped are phase-log values formatted as inline code. They do not execute shell commands.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:49:ruby-shell-backtick-execution","reason":"The fenced block instructs executing a sibling helper to resolve an initiative and mutate its phase log. Its implementation is unavailable, so execution safety remains uncertain.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:52:ruby-shell-backtick-execution","reason":"This is a closing Markdown fence followed by reading guidance. The preceding helper execution is assessed under its opening-block finding.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:54:ruby-shell-backtick-execution","reason":"The prose names charter and options documents to read. Backticks are inline formatting, not command substitution.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:55:ruby-shell-backtick-execution","reason":"OPTS and RSCH are document kinds in reading instructions. No shell execution is present.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:78:ruby-shell-backtick-execution","reason":"The block requires executing the sibling architecture ID allocator. Its source is outside this package, so its filesystem effects and execution safety cannot be verified.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:80:ruby-shell-backtick-execution","reason":"This is a closing Markdown fence and an output-path instruction. The preceding allocator invocation is assessed separately.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:82:ruby-shell-backtick-execution","reason":"The text specifies an architecture document path and sections. The matched backticks format the path rather than executing it.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:100:ruby-shell-backtick-execution","reason":"The block requires executing the sibling ADR ID allocator. Its source is unavailable, so its filesystem effects and execution safety cannot be verified.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:102:ruby-shell-backtick-execution","reason":"This is a closing Markdown fence followed by ADR requirements. The preceding allocator invocation is assessed separately.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:104:ruby-shell-backtick-execution","reason":"Reversibility is an ADR metadata field formatted as inline code. No executable backtick expression is present.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:108:ruby-shell-backtick-execution","reason":"The prose explains why execution-time rulings are inappropriate during architecture. It names exec-ruling but does not instruct running it here.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:110:ruby-shell-backtick-execution","reason":"The text describes a per-plan document and human participation. Its backticks format rulings.md rather than invoking a command.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:119:ruby-shell-backtick-execution","reason":"The block requires executing the sibling interface ID allocator. Its implementation is outside this package, so execution safety cannot be verified.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:121:ruby-shell-backtick-execution","reason":"This is a closing Markdown fence followed by interface requirements. The preceding allocator invocation is assessed separately.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:125:ruby-shell-backtick-execution","reason":"Stability is interface metadata, followed by a documentation link. The backticks do not execute code.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:129:ruby-shell-backtick-execution","reason":"This is a Markdown link to the frontmatter contract and a metadata table. No command invocation appears in the matched text.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:133:ruby-shell-backtick-execution","reason":"Components, interfaces, and decisions are architecture frontmatter examples. Their backticks are Markdown formatting.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:134:ruby-shell-backtick-execution","reason":"The table lists ADR metadata fields. It contains no executable shell or Ruby expression.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:135:ruby-shell-backtick-execution","reason":"Provides, consumers, and stability are interface metadata fields. Their backticks only format those labels.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:136:ruby-shell-backtick-execution","reason":"Component, implements, and interfaces are design metadata examples. The table does not execute them.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:138:ruby-shell-backtick-execution","reason":"The prose instructs checking identifiers against filenames and folders. The inline id token is metadata, not the operating-system command.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:139:ruby-shell-backtick-execution","reason":"Initiative and INDEX.md are metadata and document labels in validation guidance. Backticks do not execute them.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:141:ruby-shell-backtick-execution","reason":"The text requests an index row in the initiative document. INDEX.md is a formatted filename, not a shell expression.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:144:ruby-shell-backtick-execution","reason":"Created_at and updated_at are timestamp field names. This line formats them and introduces the separate date example.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:146:ruby-shell-backtick-execution","reason":"The block runs date with fixed UTC formatting to obtain a timestamp. It does not evaluate user input, access secrets, or modify files.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:148:ruby-shell-backtick-execution","reason":"This is the closing Markdown fence for the fixed date command. It is not an additional execution.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:150:ruby-shell-backtick-execution","reason":"The citation rule formats an initiative identifier in prose. No executable backtick expression is present.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:153:ruby-shell-backtick-execution","reason":"Depends_on and INDEX.md are metadata and filename labels. The line describes dependency documentation, not command execution.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:162:ruby-shell-backtick-execution","reason":"One-way and two-way are decision reversibility labels. They are inline Markdown, not executable expressions.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:166:ruby-shell-backtick-execution","reason":"The line describes changing document status after human approval. The backticks format metadata values, not a shell command.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:168:ruby-shell-backtick-execution","reason":"The block invokes a sibling helper to persist a passed architecture phase after approval. The helper implementation is unavailable, leaving execution effects uncertain.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:170:ruby-shell-backtick-execution","reason":"This is a closing Markdown fence followed by approval-gate guidance. The helper invocation is assessed under the opening-block finding.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:179:ruby-shell-backtick-execution","reason":"The block requires sibling helpers for design phase entry and ID allocation. Their implementations are unavailable, so execution safety cannot be verified.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:182:ruby-shell-backtick-execution","reason":"This closes the design-entry command block and introduces design instructions. It is not a separate executable backtick expression.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:189:ruby-shell-backtick-execution","reason":"The block invokes a sibling helper to persist design approval. Its implementation is unavailable, so its execution effects cannot be independently verified.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:191:ruby-shell-backtick-execution","reason":"This is a closing Markdown fence and conditional skipping guidance. The preceding phase helper invocation is assessed separately.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:195:ruby-shell-backtick-execution","reason":"The block invokes a sibling helper to persist a skipped design phase. Its implementation is unavailable, leaving filesystem and execution effects uncertain.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:197:ruby-shell-backtick-execution","reason":"This is a closing Markdown fence followed by architecture guidance. The scanner's long span does not represent an executable backtick expression.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:245:ruby-shell-backtick-execution","reason":"The matched text formats the reversibility field and discusses decision scrutiny. It is not executable shell syntax.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:261:ruby-shell-backtick-execution","reason":"PlaceCell is an illustrative API signature in an interface-mismatch example. It is not invoked by shell or Ruby.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:262:ruby-shell-backtick-execution","reason":"Place_cell is an illustrative incompatible API signature. Backticks format the example rather than executing it.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:274:ruby-shell-backtick-execution","reason":"Draft, stable, and frozen are interface lifecycle values in a Markdown table. No executable expression is present.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:286:ruby-shell-backtick-execution","reason":"The table explains draft and stable document states. Inline backticks label those states and do not execute commands.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:287:ruby-shell-backtick-execution","reason":"The stable-state row describes updating named consumers. The following frozen-state helper invocation is assessed under its own finding.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:288:ruby-shell-backtick-execution","reason":"The frozen-interface rule instructs executing a sibling ruling helper with plan and decision arguments. Its implementation and argument handling are unavailable, so execution safety remains uncertain.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:340:ruby-shell-backtick-execution","reason":"The matched prose describes skipped_phases metadata. The phase-log helper shown at the end of the span is assessed under its own finding.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:343:ruby-shell-backtick-execution","reason":"This instruction invokes a sibling phase-log helper with a supplied reason. The implementation and argument handling are unavailable, leaving execution safety uncertain.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:347:ruby-shell-backtick-execution","reason":"The matched prose explains the skipped row and preservation of decision history. The later allocator invocation has its own finding.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:357:ruby-shell-backtick-execution","reason":"The supersession procedure requires executing the sibling ADR allocator. Its implementation is outside the reviewed package, so execution safety cannot be verified.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:358:ruby-shell-backtick-execution","reason":"The line formats a supersedes metadata value and describes a new ADR's context. It does not execute shell code.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:361:ruby-shell-backtick-execution","reason":"The instruction changes only superseded-document frontmatter. Backticks label metadata rather than executing commands.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:362:ruby-shell-backtick-execution","reason":"Superseded_by and updated_at are metadata values. The prose explicitly preserves the document body and contains no shell expression.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:364:ruby-shell-backtick-execution","reason":"INDEX.md is the initiative index filename. Updating its rows is document maintenance, not executable backtick syntax.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:365:ruby-shell-backtick-execution","reason":"Decisions is a frontmatter field used to update document references. The backticks do not execute it.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:369:ruby-shell-backtick-execution","reason":"The prose explains preserving frozen interface contracts and checking decision metadata. No command substitution is present in the matched span.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:392:ruby-shell-backtick-execution","reason":"The checklist formats reversibility and links to safety documentation. It does not invoke shell or Ruby code.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:400:ruby-shell-backtick-execution","reason":"The matched line is a Markdown safety-document link. The later verification helper has its own finding and is not executable link syntax.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:413:ruby-shell-backtick-execution","reason":"Verification requires executing the sibling store-check helper. Its source is unavailable, so claimed validation behavior and execution safety cannot be verified.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:414:ruby-shell-backtick-execution","reason":"Mermaid labels a required diagram format in prose. The following read-only search is not executable backtick substitution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:416:ruby-shell-backtick-execution","reason":"The rg command uses a fixed identifier regex and a local architecture directory. It is a read-only document check with no secret transmission or input evaluation.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:418:ruby-shell-backtick-execution","reason":"Provides is an interface metadata field to count against documented operations. The following secret-scan helper is evaluated under its own finding.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:420:ruby-shell-backtick-execution","reason":"Verification requires running a sibling helper over architecture documents to scan secrets. Its unavailable implementation could access document contents, so safety cannot be established.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:422:ruby-shell-backtick-execution","reason":"Verification invokes a sibling helper that records a passed architecture phase. Its implementation is unavailable; the separate semantic finding addresses premature approval recording.","verdict":"confirmed","confidence":0.45},{"id":"external_commands:SKILL.md:427:ruby-shell-backtick-execution","reason":"Executor-spec is a skill name in handoff documentation. The matched prose does not execute it as a shell command.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:438:ruby-shell-backtick-execution","reason":"PlaceCell and place_cell illustrate incompatible interface names in a table. Their backticks are Markdown formatting, not invocation.","verdict":"false_positive","confidence":1},{"id":"external_commands:SKILL.md:441:ruby-shell-backtick-execution","reason":"Supersedes and skipped are document metadata labels in corrective guidance. The text preserves history rather than executing shell expressions.","verdict":"false_positive","confidence":1},{"id":"filesystem:SKILL.md:15:path-traversal-sequence","reason":"The relative link points to declared sibling prerequisite documentation. No attacker-controlled path, arbitrary file disclosure, or sensitive-system target is shown.","verdict":"false_positive","confidence":0.98},{"id":"filesystem:SKILL.md:19:path-traversal-sequence","reason":"The fixed sibling directory is the documented helper location. A parent-directory segment alone is not evidence of a traversal exploit.","verdict":"false_positive","confidence":0.98},{"id":"filesystem:SKILL.md:50:path-traversal-sequence","reason":"The fixed path selects the declared initiative helper with an example identifier. No user-controlled traversal is shown; unknown helper effects are retained separately.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:51:path-traversal-sequence","reason":"The fixed sibling path selects the initiative helper for phase entry. It does not contain attacker-supplied traversal; helper execution uncertainty is assessed separately.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:79:path-traversal-sequence","reason":"The fixed sibling path locates the architecture ID allocator. No arbitrary destination or attacker-controlled traversal is shown.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:101:path-traversal-sequence","reason":"The fixed sibling path locates the ADR ID allocator. No arbitrary destination or attacker-controlled traversal is shown.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:120:path-traversal-sequence","reason":"The fixed sibling path locates the interface ID allocator. No arbitrary destination or attacker-controlled traversal is shown.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:129:path-traversal-sequence","reason":"This is a fixed relative documentation link to the frontmatter contract. No arbitrary file access or sensitive-system target is shown.","verdict":"false_positive","confidence":0.98},{"id":"filesystem:SKILL.md:169:path-traversal-sequence","reason":"The parent segment locates the declared phase helper after approval. It is a fixed dependency path, not evidence of a path traversal exploit.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:180:path-traversal-sequence","reason":"The fixed sibling path selects the initiative helper for design phase entry. No attacker-controlled path or arbitrary destination is shown.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:181:path-traversal-sequence","reason":"The fixed sibling path locates the design ID allocator. No attacker-controlled path or arbitrary destination is shown.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:190:path-traversal-sequence","reason":"The fixed sibling path selects the phase helper for design approval. Unknown execution effects are retained separately, not inferred from the parent segment.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:196:path-traversal-sequence","reason":"The fixed sibling path selects the phase helper to declare a skip. No attacker-controlled traversal is present in the example.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:288:path-traversal-sequence","reason":"The ruling helper uses a fixed sibling path; plan and decision placeholders are separate arguments. No path traversal exploit is shown, although execution safety remains unverified.","verdict":"false_positive","confidence":0.95},{"id":"filesystem:SKILL.md:343:path-traversal-sequence","reason":"The fixed sibling path selects the phase helper; the reason placeholder is a separate argument. No attacker-controlled path traversal is shown.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:357:path-traversal-sequence","reason":"The fixed relative path selects the declared ADR allocator during supersession. No arbitrary file destination or attacker-controlled traversal is shown.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:400:path-traversal-sequence","reason":"The relative link names the declared sibling safety document. Its context forbids recording credentials rather than seeking sensitive files.","verdict":"false_positive","confidence":0.98},{"id":"filesystem:SKILL.md:413:path-traversal-sequence","reason":"The fixed sibling path selects a documented store-validation helper. No traversal input is shown; unavailable helper behavior is assessed separately.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:420:path-traversal-sequence","reason":"The fixed sibling path selects the secret-scanning helper and supplies a project documentation directory. No attacker-controlled traversal sequence is shown.","verdict":"false_positive","confidence":0.96},{"id":"filesystem:SKILL.md:422:path-traversal-sequence","reason":"The fixed sibling path selects the phase helper with an initiative placeholder. The relative dependency location does not establish a traversal exploit.","verdict":"false_positive","confidence":0.96},{"id":"blocker:SKILL.md:79:system-reconnaissance","reason":"Exec-id is the document allocator, and ARCH selects the artifact type. This is not an operating-system identity query.","verdict":"false_positive","confidence":0.97},{"id":"blocker:SKILL.md:101:system-reconnaissance","reason":"Exec-id requests an ADR identifier for the initiative. The example does not request host or account enumeration.","verdict":"false_positive","confidence":0.97},{"id":"blocker:SKILL.md:120:system-reconnaissance","reason":"Exec-id requests an interface identifier for the initiative. The example does not request host or account enumeration.","verdict":"false_positive","confidence":0.97},{"id":"blocker:SKILL.md:164:system-reconnaissance","reason":"This asks the author to explain omitted documents at human review. It contains no system query or reconnaissance command.","verdict":"false_positive","confidence":1},{"id":"blocker:SKILL.md:181:system-reconnaissance","reason":"Exec-id requests a design identifier for the initiative. The example does not request host or account enumeration.","verdict":"false_positive","confidence":0.97},{"id":"blocker:SKILL.md:357:system-reconnaissance","reason":"The supersession procedure allocates a new ADR identifier. This is not an operating-system identity query or reconnaissance instruction.","verdict":"false_positive","confidence":0.97}],"semantic_findings":[{"title":"Verification Can Record Approval Before Human Review","severity":"medium","locations":[{"file":"SKILL.md","line_end":175,"line_start":156},{"file":"SKILL.md","line_end":423,"line_start":409}],"confidence":0.91,"description":"Verification says \"Run these in this session and cite their output at the gate\" and includes a command recording architecture as passed. This conflicts with \"On approval\" and the instruction to stop at the gate. An agent could record unapproved architecture as accepted, weakening downstream approval controls.","confidence_reasoning":"The pre-gate verification list explicitly includes a passed-state mutation, while the procedure requires prior human approval. Actual enforcement cannot be checked without the helper implementation."}],"subject_marketplace_commit_sha":"6d0b11444384184b7ae743742a7e233a9a705cd9","subject_content_hash":"9462c89079993eb2dbacc254aad11fa6b986292f879da45725ecc307dbf9234b","subject_tree_hash":"cd1cf0b4d5a2d3cc5bf8d3dc8da99597964cc8c6147a69672e517af921e5352b","subject_plugin_path":"skills/atri10/executor-architecture","audit_payload_hash":"0a04652141c13eefc522b628ad60d4a7","confirmed_risk_level":"medium","scanner_version":"3.0.0","policy_version":"skillstore-security-audit-policy-v1","subject":{"marketplaceCommitSha":"6d0b11444384184b7ae743742a7e233a9a705cd9","contentHash":"9462c89079993eb2dbacc254aad11fa6b986292f879da45725ecc307dbf9234b","treeHash":"cd1cf0b4d5a2d3cc5bf8d3dc8da99597964cc8c6147a69672e517af921e5352b","pluginPath":"skills/atri10/executor-architecture","auditPayloadHash":"0a04652141c13eefc522b628ad60d4a7"},"scannerVersion":"3.0.0","policyVersion":"skillstore-security-audit-policy-v1"},"auditTranslation":null,"localization":{"requestedLocale":"en","contentLocale":"en","availableLocales":["en"],"fallbackToEnglish":false},"attestation":{"availability":"issued","url":"/api/skills/atri10-executor-architecture/audits/1/attestation","status":"active"},"trust":{"publicState":"public","auditState":"complete","auditCurrentness":null,"confirmedRiskLevel":"medium","confirmedFindingCount":1,"capabilityReviewCount":14,"needsReviewCount":0,"falsePositiveCount":0,"agentAutoInstallPolicy":"allowed","manualInstallPolicy":"allowed","artifactSignatureState":"available","attestationState":"active","verificationState":"not_verified"},"isLatest":true}}