{"data":{"skill":{"slug":"atri10-executor-brainstorm","name":"executor-brainstorm","icon":"📦","repo":"https://github.com/atri10/executor/tree/39ddcfe1d9f3497102622b72aa235fb0770187fe/skills/executor-brainstorm","status":"approved","author":"atri10","authorVersion":null,"skillstoreRevision":1},"audit":{"id":"cc469c40-f8b4-40d1-9dfb-e83dba6a02cb","skill_id":"75bc1418-623d-4e40-b339-b42c53a6be2a","version":1,"content_hash":"v3:6d0b11444384184b7ae743742a7e233a9a705cd9:d063fc8d2f2f276426ca759d5b76312506016fb12b4936561c9ab3cb55c72b70:44c9dec255d9e55390dec8bcfa68a6cf47d0c0c637dd7710df01bbcfd34ca4d0:736b696c6c732f6174726931302f6578656375746f722d627261696e73746f726d:15c26807788faef05b945be456a302c9","risk_level":"medium","is_blocked":false,"safe_to_publish":true,"analysis_status":"ok","agent_auto_install_policy":"allowed","manual_install_policy":"allowed","summary":"Of 132 static findings, 129 are formatting, fixed sibling references, or legitimate local checks; three retain uncertainty about required, unreviewed helper execution. One semantic finding identifies missing confidentiality review for public design records. No evidence found of malicious prompt injection, credential exfiltration, or network reconnaissance in the four supplied files.","remediation":[{"issue":"Required helper scripts are outside the reviewed package.","severity":"medium","suggestion":"Bundle or pin and audit the required helpers. Resolve them from a trusted installation directory and require approval before running unverified dependencies."},{"issue":"Public session records can contain confidential information beyond secrets.","severity":"medium","suggestion":"Classify and redact personal, customer, and proprietary information before writing public records. Require explicit publication approval and provide private storage."}],"risk_factor_evidence":[{"factor":"external_commands","evidence":[{"file":"concept-explorer-prompt.md","line_end":57,"line_start":57},{"file":"concept-explorer-prompt.md","line_end":72,"line_start":67},{"file":"concept-explorer-prompt.md","line_end":76,"line_start":72},{"file":"concept-explorer-prompt.md","line_end":79,"line_start":76},{"file":"concept-explorer-prompt.md","line_end":83,"line_start":79},{"file":"concept-explorer-prompt.md","line_end":94,"line_start":83},{"file":"concept-explorer-prompt.md","line_end":97,"line_start":94},{"file":"concept-explorer-prompt.md","line_end":98,"line_start":97},{"file":"concept-explorer-prompt.md","line_end":133,"line_start":98},{"file":"concept-explorer-prompt.md","line_end":133,"line_start":133},{"file":"concept-explorer-prompt.md","line_end":176,"line_start":135},{"file":"concept-explorer-prompt.md","line_end":180,"line_start":176},{"file":"design-critic-prompt.md","line_end":49,"line_start":49},{"file":"design-critic-prompt.md","line_end":69,"line_start":66},{"file":"design-critic-prompt.md","line_end":73,"line_start":69},{"file":"design-critic-prompt.md","line_end":78,"line_start":73},{"file":"design-critic-prompt.md","line_end":91,"line_start":78},{"file":"design-critic-prompt.md","line_end":94,"line_start":91},{"file":"design-critic-prompt.md","line_end":95,"line_start":94},{"file":"design-critic-prompt.md","line_end":101,"line_start":95},{"file":"design-critic-prompt.md","line_end":104,"line_start":101},{"file":"design-critic-prompt.md","line_end":108,"line_start":104},{"file":"design-critic-prompt.md","line_end":125,"line_start":108},{"file":"design-critic-prompt.md","line_end":133,"line_start":125},{"file":"design-critic-prompt.md","line_end":134,"line_start":134},{"file":"design-critic-prompt.md","line_end":209,"line_start":145},{"file":"design-critic-prompt.md","line_end":222,"line_start":209},{"file":"design-critic-prompt.md","line_end":225,"line_start":222},{"file":"design-critic-prompt.md","line_end":229,"line_start":225},{"file":"design-critic-prompt.md","line_end":294,"line_start":294},{"file":"design-critic-prompt.md","line_end":297,"line_start":296},{"file":"design-critic-prompt.md","line_end":305,"line_start":297},{"file":"prior-art-scout-prompt.md","line_end":61,"line_start":43},{"file":"prior-art-scout-prompt.md","line_end":64,"line_start":61},{"file":"prior-art-scout-prompt.md","line_end":71,"line_start":64},{"file":"prior-art-scout-prompt.md","line_end":77,"line_start":71},{"file":"prior-art-scout-prompt.md","line_end":96,"line_start":77},{"file":"prior-art-scout-prompt.md","line_end":103,"line_start":96},{"file":"prior-art-scout-prompt.md","line_end":110,"line_start":103},{"file":"prior-art-scout-prompt.md","line_end":114,"line_start":110},{"file":"prior-art-scout-prompt.md","line_end":115,"line_start":115},{"file":"prior-art-scout-prompt.md","line_end":140,"line_start":126},{"file":"prior-art-scout-prompt.md","line_end":146,"line_start":140},{"file":"prior-art-scout-prompt.md","line_end":168,"line_start":146},{"file":"prior-art-scout-prompt.md","line_end":179,"line_start":168},{"file":"prior-art-scout-prompt.md","line_end":195,"line_start":179},{"file":"prior-art-scout-prompt.md","line_end":196,"line_start":195},{"file":"prior-art-scout-prompt.md","line_end":198,"line_start":196},{"file":"prior-art-scout-prompt.md","line_end":203,"line_start":198},{"file":"prior-art-scout-prompt.md","line_end":256,"line_start":256}]},{"factor":"filesystem","evidence":[{"file":"SKILL.md","line_end":43,"line_start":43},{"file":"SKILL.md","line_end":50,"line_start":50},{"file":"SKILL.md","line_end":219,"line_start":219},{"file":"SKILL.md","line_end":231,"line_start":231},{"file":"SKILL.md","line_end":267,"line_start":267},{"file":"SKILL.md","line_end":275,"line_start":275}]}],"critical_findings":[],"high_findings":[],"medium_findings":[{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":44,"line_start":41}],"confidence":0.6,"description":"```bash","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The Bash example invokes an external exec-id helper absent from the reviewed package. Its effects cannot be verified, so execution remains a dependency risk."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":269,"line_start":267}],"confidence":0.6,"description":"1. `../executor/scripts/exec-store-check` — no B2 or B3 finding for this","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The workflow requires running exec-store-check from a sibling package absent from this review. Unknown helper effects remain an execution risk."},{"title":"Ruby/shell backtick execution","locations":[{"file":"SKILL.md","line_end":277,"line_start":275}],"confidence":0.6,"description":"4. `../executor/scripts/exec-scan-secrets <session dir>` — exit 0; the","review_kind":"capability","source_category":"external_commands","source_severity":"medium","confidence_reasoning":"The workflow requires running exec-scan-secrets on session files, but its implementation is outside this review. Its access and side effects remain unverified."},{"title":"Public Records Lack Confidentiality Review","locations":[{"file":"SKILL.md","line_end":90,"line_start":75},{"file":"SKILL.md","line_end":281,"line_start":275},{"file":"prior-art-scout-prompt.md","line_end":157,"line_start":138}],"confidence":0.86,"description":"The workflow records business constraints and repository findings in a store described as public. Only a secrets scan is required, leaving personal and proprietary information without explicit publication approval or redaction.","review_kind":"security","source_category":"semantic","source_severity":"medium","confidence_reasoning":"The source explicitly calls the store public and requires recording business constraints and repository details. Disclosure depends on actual inputs; no transmission is demonstrated."}],"low_findings":[],"dangerous_patterns":[],"files_scanned":4,"total_lines":1204,"audit_model":"codex","audited_at":"2026-10-05T17:03:29.469+00:00","created_at":"2026-10-06T06:51:32.120027+00:00","static_findings":[{"id":"external_commands:concept-explorer-prompt.md:57:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"**Brief and map:** [SESSION_FILE], sections `## Brief` and `## Map`","category":"external_commands","line_end":57,"severity":"medium","line_start":57},{"id":"external_commands:concept-explorer-prompt.md:67:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"`[SESSION_DIR]/concepts/` — independence is the contract.","category":"external_commands","line_end":72,"severity":"medium","line_start":67},{"id":"external_commands:concept-explorer-prompt.md:72:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"not a brief. If it is missing or truncated, return `BLOCKED` naming","category":"external_commands","line_end":76,"severity":"medium","line_start":72},{"id":"external_commands:concept-explorer-prompt.md:76:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"If it already exists, another explorer wrote it: return `BLOCKED`.","category":"external_commands","line_end":79,"severity":"medium","line_start":76},{"id":"external_commands:concept-explorer-prompt.md:79:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"- **Your parent session directory exists.** If not, `BLOCKED` — do not","category":"external_commands","line_end":83,"severity":"medium","line_start":79},{"id":"external_commands:concept-explorer-prompt.md:83:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"drop one. Design to the strongest reading, then return `DONE_WITH_CONCERNS` naming the constraint yo","category":"external_commands","line_end":94,"severity":"medium","line_start":83},{"id":"external_commands:concept-explorer-prompt.md:94:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"`None — <why>` rather than padding it. An empty section and a padded","category":"external_commands","line_end":97,"severity":"medium","line_start":94},{"id":"external_commands:concept-explorer-prompt.md:97:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"Return `BLOCKED` and stop. Do not write a partial concept file and","category":"external_commands","line_end":98,"severity":"medium","line_start":97},{"id":"external_commands:concept-explorer-prompt.md:98:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"report `DONE_WITH_CONCERNS` — the critic will read it as a complete","category":"external_commands","line_end":133,"severity":"medium","line_start":98},{"id":"external_commands:concept-explorer-prompt.md:133:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"- **Primary flow diagram** — one `mermaid` block (`sequenceDiagram`","category":"external_commands","line_end":133,"severity":"medium","line_start":133},{"id":"external_commands:concept-explorer-prompt.md:135:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"`flowchart` for a process). No ASCII art.","category":"external_commands","line_end":176,"severity":"medium","line_start":135},{"id":"external_commands:concept-explorer-prompt.md:176:ruby-shell-backtick-execution","file":"concept-explorer-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"4. Confirm [OUTPUT_FILE] is your only change (`git status --short`).","category":"external_commands","line_end":180,"severity":"medium","line_start":176},{"id":"blocker:concept-explorer-prompt.md:159:system-reconnaissance","file":"concept-explorer-prompt.md","pattern":"System reconnaissance","snippet":"have a walk? A missing walk is a gap you did not look at.","category":"blocker","line_end":159,"severity":"low","line_start":159},{"id":"blocker:concept-explorer-prompt.md:160:system-reconnaissance","file":"concept-explorer-prompt.md","pattern":"System reconnaissance","snippet":"3. Did you drift toward a generic middle design? Name one decision a","category":"blocker","line_end":160,"severity":"low","line_start":160},{"id":"blocker:concept-explorer-prompt.md:166:system-reconnaissance","file":"concept-explorer-prompt.md","pattern":"System reconnaissance","snippet":"6. Does the mermaid block have a colon after every sequence-diagram","category":"blocker","line_end":166,"severity":"low","line_start":166},{"id":"external_commands:design-critic-prompt.md:49:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"**Brief and map:** [SESSION_FILE], sections `## Brief` and `## Map`","category":"external_commands","line_end":49,"severity":"medium","line_start":49},{"id":"external_commands:design-critic-prompt.md:66:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"1. [SESSION_FILE] exists and carries a `## Brief`. Every finding is","category":"external_commands","line_end":69,"severity":"medium","line_start":66},{"id":"external_commands:design-critic-prompt.md:69:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"missing, return `BLOCKED` naming it. Do not reconstruct the","category":"external_commands","line_end":73,"severity":"medium","line_start":69},{"id":"external_commands:design-critic-prompt.md:73:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"`BLOCKED` naming the paths. With some, the ones that are not","category":"external_commands","line_end":78,"severity":"medium","line_start":73},{"id":"external_commands:design-critic-prompt.md:78:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"result. Return `BLOCKED` naming both.","category":"external_commands","line_end":91,"severity":"medium","line_start":78},{"id":"external_commands:design-critic-prompt.md:91:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"`## Concepts` summary in the session record is the controller's","category":"external_commands","line_end":94,"severity":"medium","line_start":91},{"id":"external_commands:design-critic-prompt.md:94:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"Could not assess (Unreadable subject), list its letter in `CONCEPTS`","category":"external_commands","line_end":95,"severity":"medium","line_start":94},{"id":"external_commands:design-critic-prompt.md:95:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"and omit it from `ATTACKED`, and say which file stopped you.","category":"external_commands","line_end":101,"severity":"medium","line_start":95},{"id":"external_commands:design-critic-prompt.md:101:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"missing half to `NOT RUN — <file> is incomplete`, and name the last","category":"external_commands","line_end":104,"severity":"medium","line_start":101},{"id":"external_commands:design-critic-prompt.md:104:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"**The session file has no `## Map`, or its use-case list is empty.**","category":"external_commands","line_end":108,"severity":"medium","line_start":104},{"id":"external_commands:design-critic-prompt.md:108:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"row to `NOT RUN — no map`, record it under Could not assess (Missing","category":"external_commands","line_end":125,"severity":"medium","line_start":108},{"id":"external_commands:design-critic-prompt.md:125:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"**[CONCEPT_FILES] and the session's `## Concepts` disagree** — a","category":"external_commands","line_end":133,"severity":"medium","line_start":125},{"id":"external_commands:design-critic-prompt.md:134:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"BLOCKED` and a `REASON:` naming the file and its state. Everything","category":"external_commands","line_end":134,"severity":"medium","line_start":134},{"id":"external_commands:design-critic-prompt.md:145:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"budget` against every concept it was skipped for, and report the","category":"external_commands","line_end":209,"severity":"medium","line_start":145},{"id":"external_commands:design-critic-prompt.md:209:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"method you could not run says `NOT RUN — <what was missing>`; the","category":"external_commands","line_end":222,"severity":"medium","line_start":209},{"id":"external_commands:design-critic-prompt.md:222:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"attacked, and that every unrun row says `NOT RUN` with a reason.","category":"external_commands","line_end":225,"severity":"medium","line_start":222},{"id":"external_commands:design-critic-prompt.md:225:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"4. Confirm [OUTPUT_FILE] is your only change (`git status --short`).","category":"external_commands","line_end":229,"severity":"medium","line_start":225},{"id":"external_commands:design-critic-prompt.md:294:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"attempt — and put that attempt's `created_at:` in `SUPERSEDES:`","category":"external_commands","line_end":294,"severity":"medium","line_start":294},{"id":"external_commands:design-critic-prompt.md:296:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"`round:`, and every section filled in, the round is finished: return","category":"external_commands","line_end":297,"severity":"medium","line_start":296},{"id":"external_commands:design-critic-prompt.md:297:ruby-shell-backtick-execution","file":"design-critic-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"`BLOCKED` naming it. Overwriting a completed attack destroys a","category":"external_commands","line_end":305,"severity":"medium","line_start":297},{"id":"blocker:design-critic-prompt.md:116:system-reconnaissance","file":"design-critic-prompt.md","pattern":"System reconnaissance","snippet":"design, it did not compare designs. Do not soften a FATAL because it","category":"blocker","line_end":116,"severity":"low","line_start":116},{"id":"blocker:design-critic-prompt.md:144:system-reconnaissance","file":"design-critic-prompt.md","pattern":"System reconnaissance","snippet":"you have, mark every method you did not run `NOT RUN — out of","category":"blocker","line_end":144,"severity":"low","line_start":144},{"id":"blocker:design-critic-prompt.md:205:system-reconnaissance","file":"design-critic-prompt.md","pattern":"System reconnaissance","snippet":"2. Did any finding rely on a requirement the brief does not state?","category":"blocker","line_end":205,"severity":"low","line_start":205},{"id":"blocker:design-critic-prompt.md:207:system-reconnaissance","file":"design-critic-prompt.md","pattern":"System reconnaissance","snippet":"3. Did you run all ten methods against every concept? A method you ran","category":"blocker","line_end":207,"severity":"low","line_start":207},{"id":"blocker:design-critic-prompt.md:210:system-reconnaissance","file":"design-critic-prompt.md","pattern":"System reconnaissance","snippet":"two are not interchangeable, and a \"no finding\" you did not earn","category":"blocker","line_end":210,"severity":"low","line_start":210},{"id":"blocker:design-critic-prompt.md:212:system-reconnaissance","file":"design-critic-prompt.md","pattern":"System reconnaissance","snippet":"4. Did you propose a new concept anywhere? Rewrite it as a mitigation","category":"blocker","line_end":212,"severity":"low","line_start":212},{"id":"external_commands:prior-art-scout-prompt.md:43:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"**Brief:** [BRIEF_FILE], section `## Brief`","category":"external_commands","line_end":61,"severity":"medium","line_start":43},{"id":"external_commands:prior-art-scout-prompt.md:61:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"1. [BRIEF_FILE] exists and carries a `## Brief` section. The brief is","category":"external_commands","line_end":64,"severity":"medium","line_start":61},{"id":"external_commands:prior-art-scout-prompt.md:64:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"section is missing, return `BLOCKED` naming it. Do not write the","category":"external_commands","line_end":71,"severity":"medium","line_start":64},{"id":"external_commands:prior-art-scout-prompt.md:71:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"`BLOCKED` naming the path. Never fall back to the nearest","category":"external_commands","line_end":77,"severity":"medium","line_start":71},{"id":"external_commands:prior-art-scout-prompt.md:77:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"Return `BLOCKED`.","category":"external_commands","line_end":96,"severity":"medium","line_start":77},{"id":"external_commands:prior-art-scout-prompt.md:96:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"count it in `AREAS_UNMATCHED`, and say whether any of them plausibly","category":"external_commands","line_end":103,"severity":"medium","line_start":96},{"id":"external_commands:prior-art-scout-prompt.md:103:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"caller search with the row and put the revival in the `Would need`","category":"external_commands","line_end":110,"severity":"medium","line_start":103},{"id":"external_commands:prior-art-scout-prompt.md:110:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"the brief assumes and what the code does, with `path:line`.","category":"external_commands","line_end":114,"severity":"medium","line_start":110},{"id":"external_commands:prior-art-scout-prompt.md:115:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"BLOCKED` and a `REASON:` naming the file and its state. Everything","category":"external_commands","line_end":115,"severity":"medium","line_start":115},{"id":"external_commands:prior-art-scout-prompt.md:126:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"them in `UNREACHED`. A short map with no unreached list reads as a","category":"external_commands","line_end":140,"severity":"medium","line_start":126},{"id":"external_commands:prior-art-scout-prompt.md:140:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"needs. For each: what it does today, `path:line` of its entry","category":"external_commands","line_end":146,"severity":"medium","line_start":140},{"id":"external_commands:prior-art-scout-prompt.md:146:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"two or three instances of each at `path:line` — a convention seen","category":"external_commands","line_end":168,"severity":"medium","line_start":146},{"id":"external_commands:prior-art-scout-prompt.md:168:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"- Every claim about this repository cites `path:line`. A claim you","category":"external_commands","line_end":179,"severity":"medium","line_start":168},{"id":"external_commands:prior-art-scout-prompt.md:179:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"1. Does every repository claim carry a `path:line` you actually read?","category":"external_commands","line_end":195,"severity":"medium","line_start":179},{"id":"external_commands:prior-art-scout-prompt.md:195:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"`None.` under any empty one.","category":"external_commands","line_end":196,"severity":"medium","line_start":195},{"id":"external_commands:prior-art-scout-prompt.md:196:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"2. Spot-check three cited `path:line` references by opening them;","category":"external_commands","line_end":198,"severity":"medium","line_start":196},{"id":"external_commands:prior-art-scout-prompt.md:198:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"3. Confirm `git status --short` shows [OUTPUT_FILE] as your only","category":"external_commands","line_end":203,"severity":"medium","line_start":198},{"id":"external_commands:prior-art-scout-prompt.md:256:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"attempt — and put that attempt's `created_at:` in `SUPERSEDES:`","category":"external_commands","line_end":256,"severity":"medium","line_start":256},{"id":"external_commands:prior-art-scout-prompt.md:258:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"same `session:`, and every section filled in, the survey is","category":"external_commands","line_end":259,"severity":"medium","line_start":258},{"id":"external_commands:prior-art-scout-prompt.md:259:ruby-shell-backtick-execution","file":"prior-art-scout-prompt.md","pattern":"Ruby/shell backtick execution","snippet":"finished: return `BLOCKED` naming it. A session has one map and","category":"external_commands","line_end":268,"severity":"medium","line_start":259},{"id":"blocker:prior-art-scout-prompt.md:22:system-reconnaissance","file":"prior-art-scout-prompt.md","pattern":"System reconnaissance","snippet":"4. Choose the model: mid tier for a small repo, top tier for a large or","category":"blocker","line_end":22,"severity":"low","line_start":22},{"id":"blocker:prior-art-scout-prompt.md:30:system-reconnaissance","file":"prior-art-scout-prompt.md","pattern":"System reconnaissance","snippet":"model: [MODEL — REQUIRED: mid tier for a small repo, top tier for a","category":"blocker","line_end":30,"severity":"low","line_start":30},{"id":"blocker:prior-art-scout-prompt.md:37:system-reconnaissance","file":"prior-art-scout-prompt.md","pattern":"System reconnaissance","snippet":"being accurate, cited, and honest about what you did not find.","category":"blocker","line_end":37,"severity":"low","line_start":37},{"id":"blocker:prior-art-scout-prompt.md:124:system-reconnaissance","file":"prior-art-scout-prompt.md","pattern":"System reconnaissance","snippet":"focus area you did not reach, every path you did not open, and","category":"blocker","line_end":124,"severity":"low","line_start":124},{"id":"blocker:prior-art-scout-prompt.md:286:system-reconnaissance","file":"prior-art-scout-prompt.md","pattern":"System reconnaissance","snippet":"| `[MODEL]` | mid tier for a small repo, top tier for a large or unfamiliar one |","category":"blocker","line_end":286,"severity":"low","line_start":286},{"id":"blocker:prior-art-scout-prompt.md:308:system-reconnaissance","file":"prior-art-scout-prompt.md","pattern":"System reconnaissance","snippet":"areas the survey did not reach — an explorer that trusts a short map","category":"blocker","line_end":308,"severity":"low","line_start":308},{"id":"external_commands:SKILL.md:15:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"**Brainstorming is required, not optional.** `exec-initiative` refuses","category":"external_commands","line_end":15,"severity":"medium","line_start":15},{"id":"external_commands:SKILL.md:16:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`specification entered` until a decided session feeding specification","category":"external_commands","line_end":16,"severity":"medium","line_start":16},{"id":"external_commands:SKILL.md:17:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"exists, and `planning entered` until one feeding planning exists. A spec","category":"external_commands","line_end":17,"severity":"medium","line_start":17},{"id":"external_commands:SKILL.md:25:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| A new feature, use case, or capability from a rough idea | `design` | `specification` (and often `","category":"external_commands","line_end":25,"severity":"medium","line_start":25},{"id":"external_commands:SKILL.md:26:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| Before planning: how the spec splits into plans and tasks | `decision` | `planning` |","category":"external_commands","line_end":26,"severity":"medium","line_start":26},{"id":"external_commands:SKILL.md:27:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| One open question with competing approaches — a state shape, a sync boundary, a storage family | `","category":"external_commands","line_end":27,"severity":"medium","line_start":27},{"id":"external_commands:SKILL.md:28:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| \"Let's brainstorm X\", inside or outside an initiative | `design` for a feature, `decision` for a q","category":"external_commands","line_end":28,"severity":"medium","line_start":28},{"id":"external_commands:SKILL.md:38:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| Inside an initiative | `docs/executor/<INIT>-<slug>/brainstorm/sessions/<UTC>-<topic>/` |","category":"external_commands","line_end":38,"severity":"medium","line_start":38},{"id":"external_commands:SKILL.md:39:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"| Before any initiative exists | `docs/executor/brainstorm/sessions/<UTC>-<topic>/` |","category":"external_commands","line_end":39,"severity":"medium","line_start":39},{"id":"external_commands:SKILL.md:41:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":44,"severity":"medium","line_start":41},{"id":"external_commands:SKILL.md:44:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":46,"severity":"medium","line_start":44},{"id":"external_commands:SKILL.md:46:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"A pre-initiative session carries `id: null` and `initiative: null`. When","category":"external_commands","line_end":46,"severity":"medium","line_start":46},{"id":"external_commands:SKILL.md:47:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"the idea becomes an initiative, intake adopts it: `git mv` it into the new","category":"external_commands","line_end":48,"severity":"medium","line_start":47},{"id":"external_commands:SKILL.md:48:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"initiative's `brainstorm/sessions/`, allocate its `BRN` ID, set","category":"external_commands","line_end":48,"severity":"medium","line_start":48},{"id":"external_commands:SKILL.md:49:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`initiative:`, add its Documents-table row, and derive the charter from","category":"external_commands","line_end":55,"severity":"medium","line_start":49},{"id":"external_commands:SKILL.md:55:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```mermaid","category":"external_commands","line_end":67,"severity":"medium","line_start":55},{"id":"external_commands:SKILL.md:67:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":75,"severity":"medium","line_start":67},{"id":"external_commands:SKILL.md:75:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Write `## Brief` in `session.md` with the human, before any concept","category":"external_commands","line_end":75,"severity":"medium","line_start":75},{"id":"external_commands:SKILL.md:94:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Write `## Map`:","category":"external_commands","line_end":102,"severity":"medium","line_start":94},{"id":"external_commands:SKILL.md:102:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"each tagged `one-way door` (costly to reverse) or `reversible`.","category":"external_commands","line_end":102,"severity":"medium","line_start":102},{"id":"external_commands:SKILL.md:117:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Summarize each returned concept as `### <LETTER> — <name>` under","category":"external_commands","line_end":118,"severity":"medium","line_start":117},{"id":"external_commands:SKILL.md:118:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`## Concepts`: shape, lens, and the one tradeoff that decides it.","category":"external_commands","line_end":124,"severity":"medium","line_start":118},{"id":"external_commands:SKILL.md:124:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"under `## Stress test` with its disposition: accepted as a known risk,","category":"external_commands","line_end":133,"severity":"medium","line_start":124},{"id":"external_commands:SKILL.md:133:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"in `decided:` and the reasoning under `## Decision log`, including what","category":"external_commands","line_end":133,"severity":"medium","line_start":133},{"id":"external_commands:SKILL.md:135:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`draft` with the open question named — an undecided session is a real","category":"external_commands","line_end":140,"severity":"medium","line_start":135},{"id":"external_commands:SKILL.md:140:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Write `## Design` for the chosen concept, merged with the accepted","category":"external_commands","line_end":142,"severity":"medium","line_start":140},{"id":"external_commands:SKILL.md:142:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"use case, a `mermaid` diagram of the primary flow, domain and data,","category":"external_commands","line_end":144,"severity":"medium","line_start":142},{"id":"external_commands:SKILL.md:144:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`## Risks and open questions`: the critic's accepted risks, the","category":"external_commands","line_end":149,"severity":"medium","line_start":144},{"id":"external_commands:SKILL.md:149:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Write `## Handoff`:","category":"external_commands","line_end":157,"severity":"medium","line_start":149},{"id":"external_commands:SKILL.md:157:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Set `status: active` and `feeds:`. The spec cites the session and","category":"external_commands","line_end":157,"severity":"medium","line_start":157},{"id":"external_commands:SKILL.md:173:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"4. **Ask the human to pick**, record `decided:`, set `status: active` and","category":"external_commands","line_end":173,"severity":"medium","line_start":173},{"id":"external_commands:SKILL.md:174:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`feeds:`.","category":"external_commands","line_end":182,"severity":"medium","line_start":174},{"id":"external_commands:SKILL.md:182:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```markdown","category":"external_commands","line_end":209,"severity":"medium","line_start":182},{"id":"external_commands:SKILL.md:209:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":211,"severity":"medium","line_start":209},{"id":"external_commands:SKILL.md:211:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"A decision session carries `## Options` (≥3 `###` entries),","category":"external_commands","line_end":211,"severity":"medium","line_start":211},{"id":"external_commands:SKILL.md:212:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`## Adversarial pass`, and `## Outcome` instead. `exec-store-check` B2","category":"external_commands","line_end":212,"severity":"medium","line_start":212},{"id":"external_commands:SKILL.md:214:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"session the whole method and a `decided:` pick.","category":"external_commands","line_end":217,"severity":"medium","line_start":214},{"id":"external_commands:SKILL.md:217:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`prior-art.md`, `concepts/<LETTER>-<lens>.md`, `critique-R<nn>.md` — and","category":"external_commands","line_end":217,"severity":"medium","line_start":217},{"id":"external_commands:SKILL.md:218:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"every dispatch is a row in the session's `dispatches.md`, with the","category":"external_commands","line_end":221,"severity":"medium","line_start":218},{"id":"external_commands:SKILL.md:221:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`INDEX.md` (`INIT-0004-BRN-01`, kind `brainstorm`) — B3 checks it.","category":"external_commands","line_end":221,"severity":"medium","line_start":221},{"id":"external_commands:SKILL.md:224:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"entry is a line in `INDEX.md` containing \"brainstorm\". It satisfies","category":"external_commands","line_end":230,"severity":"medium","line_start":224},{"id":"external_commands:SKILL.md:230:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Same method, rendered: `executor-discovery`'s","category":"external_commands","line_end":234,"severity":"medium","line_start":230},{"id":"external_commands:SKILL.md:234:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"deliverable either way — a visual session with no `session.md` produced","category":"external_commands","line_end":239,"severity":"medium","line_start":234},{"id":"external_commands:SKILL.md:239:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Run this against the session record before setting `status: active`, and","category":"external_commands","line_end":251,"severity":"medium","line_start":239},{"id":"external_commands:SKILL.md:251:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"walk in `## Design`?** A flow with no walk becomes a requirement nobody","category":"external_commands","line_end":257,"severity":"medium","line_start":251},{"id":"external_commands:SKILL.md:257:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"7. **Is every requirement candidate in `## Handoff` traceable** to a use","category":"external_commands","line_end":267,"severity":"medium","line_start":257},{"id":"external_commands:SKILL.md:267:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"1. `../executor/scripts/exec-store-check` — no B2 or B3 finding for this","category":"external_commands","line_end":269,"severity":"medium","line_start":267},{"id":"external_commands:SKILL.md:269:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"2. Every concept file named in `## Concepts` exists under `concepts/`,","category":"external_commands","line_end":269,"severity":"medium","line_start":269},{"id":"external_commands:SKILL.md:270:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"every critique round under `## Stress test` exists as","category":"external_commands","line_end":271,"severity":"medium","line_start":270},{"id":"external_commands:SKILL.md:271:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`critique-R<nn>.md`, and every dispatched agent has a `dispatches.md`","category":"external_commands","line_end":271,"severity":"medium","line_start":271},{"id":"external_commands:SKILL.md:273:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"3. `feeds:` names the phase about to be entered; `status: active`;","category":"external_commands","line_end":273,"severity":"medium","line_start":273},{"id":"external_commands:SKILL.md:274:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`decided:` set.","category":"external_commands","line_end":275,"severity":"medium","line_start":274},{"id":"external_commands:SKILL.md:275:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"4. `../executor/scripts/exec-scan-secrets <session dir>` — exit 0; the","category":"external_commands","line_end":277,"severity":"medium","line_start":275},{"id":"filesystem:SKILL.md:43:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"../executor/scripts/exec-id INIT-0004 BRN    # inside an initiative: the session ID","category":"filesystem","line_end":43,"severity":"high","line_start":43},{"id":"filesystem:SKILL.md:50:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"its Brief. See [layout.md](../executor/references/layout.md) for the","category":"filesystem","line_end":50,"severity":"high","line_start":50},{"id":"filesystem:SKILL.md:219:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"identity the [dispatch registry](../executor/references/layout.md#dispatch-registry)","category":"filesystem","line_end":219,"severity":"high","line_start":219},{"id":"filesystem:SKILL.md:231:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"[visual-companion.md](../executor-discovery/visual-companion.md) owns the","category":"filesystem","line_end":231,"severity":"high","line_start":231},{"id":"filesystem:SKILL.md:267:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"1. `../executor/scripts/exec-store-check` — no B2 or B3 finding for this","category":"filesystem","line_end":267,"severity":"high","line_start":267},{"id":"filesystem:SKILL.md:275:path-traversal-sequence","file":"SKILL.md","pattern":"Path traversal sequence","snippet":"4. `../executor/scripts/exec-scan-secrets <session dir>` — exit 0; the","category":"filesystem","line_end":275,"severity":"high","line_start":275},{"id":"blocker:SKILL.md:43:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"../executor/scripts/exec-id INIT-0004 BRN    # inside an initiative: the session ID","category":"blocker","line_end":43,"severity":"low","line_start":43},{"id":"blocker:SKILL.md:55:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"```mermaid","category":"blocker","line_end":56,"severity":"low","line_start":55},{"id":"blocker:SKILL.md:260:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"8. **Did the human make the pick** — recorded in their words in the","category":"blocker","line_end":260,"severity":"low","line_start":260},{"id":"blocker:SKILL.md:261:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"Decision log — or did the controller decide for them?","category":"blocker","line_end":261,"severity":"low","line_start":261},{"id":"blocker:SKILL.md:61:network-reconnaissance","file":"SKILL.md","pattern":"Network reconnaissance","snippet":"Stress --> Diverge : every leading concept FATAL","category":"blocker","line_end":61,"severity":"low","line_start":61},{"id":"blocker:SKILL.md:62:network-reconnaissance","file":"SKILL.md","pattern":"Network reconnaissance","snippet":"Stress --> Converge : leading concepts survive","category":"blocker","line_end":62,"severity":"low","line_start":62}],"finding_verdicts":[{"id":"external_commands:concept-explorer-prompt.md:57:ruby-shell-backtick-execution","reason":"The backticks format section headings in the brief reference, not executable Ruby or shell substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:67:ruby-shell-backtick-execution","reason":"The backticks format an output directory and a BLOCKED status; the surrounding instructions restrict reading sibling concepts.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:72:ruby-shell-backtick-execution","reason":"BLOCKED is a documented return status for a missing brief, not a command to execute.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:76:ruby-shell-backtick-execution","reason":"BLOCKED is a return status protecting existing concept files from overwriting, not shell execution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:79:ruby-shell-backtick-execution","reason":"The text requires stopping when the parent directory is missing; its backticks format status labels.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:83:ruby-shell-backtick-execution","reason":"DONE_WITH_CONCERNS and None are formatted reporting labels, with no executable substitutions in the surrounding prose.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:94:ruby-shell-backtick-execution","reason":"The None placeholder explains an empty section and BLOCKED describes a refusal status; both are Markdown formatting.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:97:ruby-shell-backtick-execution","reason":"The instruction returns BLOCKED rather than producing a partial concept; no shell command is present.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:98:ruby-shell-backtick-execution","reason":"The matched span contains concept-writing guidance and formatted status and diagram labels, not Ruby or shell substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:133:ruby-shell-backtick-execution","reason":"The backticks name Mermaid and sequenceDiagram syntax for a design document, not an executable command.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:concept-explorer-prompt.md:135:ruby-shell-backtick-execution","reason":"The span contains diagram guidance and a fixed git status check; neither executes interpolated code or changes repository contents.","verdict":"false_positive","confidence":0.98},{"id":"external_commands:concept-explorer-prompt.md:176:ruby-shell-backtick-execution","reason":"git status --short is a fixed, read-only check of local changes, with no user-controlled command arguments.","verdict":"false_positive","confidence":0.99},{"id":"blocker:concept-explorer-prompt.md:159:system-reconnaissance","reason":"The question checks whether each use case has a documented walkthrough; it does not inspect the host system.","verdict":"false_positive","confidence":0.99},{"id":"blocker:concept-explorer-prompt.md:160:system-reconnaissance","reason":"The question checks design differentiation between lenses, not system identity or host reconnaissance.","verdict":"false_positive","confidence":0.99},{"id":"blocker:concept-explorer-prompt.md:166:system-reconnaissance","reason":"The question checks Mermaid punctuation, not host information or system commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:49:ruby-shell-backtick-execution","reason":"The backticks format Brief and Map section headings in an input reference, not executable substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:66:ruby-shell-backtick-execution","reason":"The span formats a required Brief heading and a BLOCKED return label; it contains no shell execution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:69:ruby-shell-backtick-execution","reason":"The backticks delimit BLOCKED return labels for missing inputs, not commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:73:ruby-shell-backtick-execution","reason":"BLOCKED denotes refusal when input paths or round identifiers are invalid, with no command substitution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:78:ruby-shell-backtick-execution","reason":"The matched span contains refusal and missing-concept guidance with formatted labels, not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:91:ruby-shell-backtick-execution","reason":"Concepts and CONCEPTS are a document heading and a return field; backticks only distinguish their names.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:94:ruby-shell-backtick-execution","reason":"CONCEPTS and ATTACKED label returned coverage fields, not shell commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:95:ruby-shell-backtick-execution","reason":"The span formats ATTACKED and a NOT RUN explanation for incomplete input; no executable substitution appears.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:101:ruby-shell-backtick-execution","reason":"NOT RUN and Map are report text and a section heading, not commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:104:ruby-shell-backtick-execution","reason":"The instruction documents how to report a missing Map without inventing flows; its backticks are Markdown formatting.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:108:ruby-shell-backtick-execution","reason":"The span formats missing-input reporting and a Concepts heading; it does not invoke Ruby or a shell.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:125:ruby-shell-backtick-execution","reason":"The text records disagreements between supplied concept files and summaries; the backticks delimit document and return-field names.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:134:ruby-shell-backtick-execution","reason":"BLOCKED and REASON are refusal-report fields, not executable expressions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:145:ruby-shell-backtick-execution","reason":"The span covers critique methods and incomplete-coverage reporting; the backticks format report labels rather than executable substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:209:ruby-shell-backtick-execution","reason":"NOT RUN marks methods that were not performed; the prose and verification instructions do not execute interpolated code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:222:ruby-shell-backtick-execution","reason":"The span formats NOT RUN and a fixed read-only git status check, not dynamic shell execution.","verdict":"false_positive","confidence":0.98},{"id":"external_commands:design-critic-prompt.md:225:ruby-shell-backtick-execution","reason":"git status --short is a fixed local inspection command that neither modifies files nor accepts untrusted arguments here.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:294:ruby-shell-backtick-execution","reason":"created_at and SUPERSEDES are timestamp metadata fields, not executable shell expressions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:296:ruby-shell-backtick-execution","reason":"round and BLOCKED are metadata and refusal labels protecting a completed critique, not commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:design-critic-prompt.md:297:ruby-shell-backtick-execution","reason":"The text prohibits overwriting completed critiques and opens a return template; its backticks are document formatting.","verdict":"false_positive","confidence":0.99},{"id":"blocker:design-critic-prompt.md:116:system-reconnaissance","reason":"The prose distinguishes critique from comparison and preserves FATAL design judgments; no system inspection occurs.","verdict":"false_positive","confidence":0.99},{"id":"blocker:design-critic-prompt.md:144:system-reconnaissance","reason":"The instruction marks unfinished critique methods as NOT RUN; it does not enumerate host information.","verdict":"false_positive","confidence":0.99},{"id":"blocker:design-critic-prompt.md:205:system-reconnaissance","reason":"The question checks whether findings depend on stated requirements, not host identity or reconnaissance.","verdict":"false_positive","confidence":0.99},{"id":"blocker:design-critic-prompt.md:207:system-reconnaissance","reason":"The question counts critique methods applied to concepts, not commands used to inspect a system.","verdict":"false_positive","confidence":0.99},{"id":"blocker:design-critic-prompt.md:210:system-reconnaissance","reason":"The text distinguishes unperformed methods from methods with no findings; it contains no reconnaissance behavior.","verdict":"false_positive","confidence":0.99},{"id":"blocker:design-critic-prompt.md:212:system-reconnaissance","reason":"The question checks whether a critique introduced a new concept; it does not query the host.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:43:ruby-shell-backtick-execution","reason":"The span identifies a Brief section and read-only survey boundaries; the backticks format headings, not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:61:ruby-shell-backtick-execution","reason":"Brief and BLOCKED identify an input section and refusal status, with no command substitution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:64:ruby-shell-backtick-execution","reason":"The text requires stopping for missing input or an invalid repository root; backticks only delimit status labels.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:71:ruby-shell-backtick-execution","reason":"BLOCKED is a refusal status and the prose prohibits falling back to another directory, not shell execution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:77:ruby-shell-backtick-execution","reason":"The span documents refusal and unmatched-focus-area reporting; the backticks format output labels.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:96:ruby-shell-backtick-execution","reason":"AREAS_UNMATCHED and Would need are report fields, not commands to execute.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:103:ruby-shell-backtick-execution","reason":"Would need and path:line are reporting and citation conventions, not shell substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:110:ruby-shell-backtick-execution","reason":"path:line formats repository evidence and the span introduces refusal reporting, not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:115:ruby-shell-backtick-execution","reason":"BLOCKED and REASON are refusal status fields, not Ruby or shell expressions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:126:ruby-shell-backtick-execution","reason":"UNREACHED and path:line format survey coverage and evidence; the surrounding prose describes repository research.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:140:ruby-shell-backtick-execution","reason":"The backticks format path:line citations for reusable modules and conventions, not executable substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:146:ruby-shell-backtick-execution","reason":"The span documents citations and optional web research, with no shell execution or outbound payload specified.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:168:ruby-shell-backtick-execution","reason":"path:line denotes mandatory citations for repository claims; it is not an executable expression.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:179:ruby-shell-backtick-execution","reason":"The span contains evidence self-checks and a None placeholder; the backticks serve Markdown formatting.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:195:ruby-shell-backtick-execution","reason":"None is a placeholder for empty report sections and path:line is citation syntax, not shell execution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:196:ruby-shell-backtick-execution","reason":"The span asks for citation checks and fixed git status inspection; neither evaluates user-controlled commands.","verdict":"false_positive","confidence":0.98},{"id":"external_commands:prior-art-scout-prompt.md:198:ruby-shell-backtick-execution","reason":"git status --short is a fixed read-only local check, not dynamic shell execution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:256:ruby-shell-backtick-execution","reason":"created_at and SUPERSEDES are timestamp metadata labels, not executable expressions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:258:ruby-shell-backtick-execution","reason":"session and BLOCKED are document metadata and refusal labels protecting a finished survey, not shell commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:prior-art-scout-prompt.md:259:ruby-shell-backtick-execution","reason":"The span prohibits silently overwriting completed surveys and opens a return template; its backticks are formatting.","verdict":"false_positive","confidence":0.99},{"id":"blocker:prior-art-scout-prompt.md:22:system-reconnaissance","reason":"The line chooses a model tier based on repository size, not a host reconnaissance command.","verdict":"false_positive","confidence":0.99},{"id":"blocker:prior-art-scout-prompt.md:30:system-reconnaissance","reason":"The line specifies the scout model tier in a dispatch template, not system identity collection.","verdict":"false_positive","confidence":0.99},{"id":"blocker:prior-art-scout-prompt.md:37:system-reconnaissance","reason":"The line describes accuracy and citations in a repository survey, not host reconnaissance.","verdict":"false_positive","confidence":0.99},{"id":"blocker:prior-art-scout-prompt.md:124:system-reconnaissance","reason":"The text requires reporting unread survey paths and unfinished focus areas, not enumerating the host system.","verdict":"false_positive","confidence":0.99},{"id":"blocker:prior-art-scout-prompt.md:286:system-reconnaissance","reason":"The placeholder table describes model tiers for different repository sizes, with no reconnaissance operation.","verdict":"false_positive","confidence":0.99},{"id":"blocker:prior-art-scout-prompt.md:308:system-reconnaissance","reason":"The line warns explorers about incomplete survey coverage, not system inspection.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:15:ruby-shell-backtick-execution","reason":"The backticks name exec-initiative while explaining workflow gates; this line does not instruct arbitrary command execution.","verdict":"false_positive","confidence":0.98},{"id":"external_commands:SKILL.md:16:ruby-shell-backtick-execution","reason":"specification entered is a documented workflow event, not a Ruby or shell expression.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:17:ruby-shell-backtick-execution","reason":"planning entered is a formatted workflow event, not an executable substitution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:25:ruby-shell-backtick-execution","reason":"The table formats design mode and downstream phase names, not executable commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:26:ruby-shell-backtick-execution","reason":"decision and planning are table values identifying workflow modes and phases, not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:27:ruby-shell-backtick-execution","reason":"decision is a formatted mode name for an open design question, not shell execution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:28:ruby-shell-backtick-execution","reason":"The table formats design and decision mode names, not commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:38:ruby-shell-backtick-execution","reason":"The backticks format a project-local session directory template, not an executable substitution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:39:ruby-shell-backtick-execution","reason":"The backticks format the pre-initiative session directory template, with no command execution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:41:ruby-shell-backtick-execution","reason":"The Bash example invokes an external exec-id helper absent from the reviewed package. Its effects cannot be verified, so execution remains a dependency risk.","verdict":"confirmed","severity":"medium","confidence":0.6},{"id":"external_commands:SKILL.md:44:ruby-shell-backtick-execution","reason":"The match begins at a closing Markdown code fence and ends at formatted session metadata, not a separate command.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:46:ruby-shell-backtick-execution","reason":"id: null and initiative: null are session metadata examples, not executable expressions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:47:ruby-shell-backtick-execution","reason":"git mv is a legitimate, described relocation of session records into an initiative, with no untrusted command construction shown.","verdict":"false_positive","confidence":0.96},{"id":"external_commands:SKILL.md:48:ruby-shell-backtick-execution","reason":"The backticks format the session subdirectory and BRN identifier type, not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:49:ruby-shell-backtick-execution","reason":"The span formats initiative metadata, a documentation link, and a diagram fence, not a command substitution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:55:ruby-shell-backtick-execution","reason":"The fenced block is a Mermaid state diagram showing design stages, not Ruby or shell code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:67:ruby-shell-backtick-execution","reason":"The match starts at a diagram closing fence and ends at a formatted Brief heading; no executable code is present.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:75:ruby-shell-backtick-execution","reason":"Brief and session.md identify a document section and filename, not executable substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:94:ruby-shell-backtick-execution","reason":"Map and reversibility labels format design documentation, not shell commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:102:ruby-shell-backtick-execution","reason":"one-way door and reversible classify decisions; these backticked labels are not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:117:ruby-shell-backtick-execution","reason":"The backticks format concept heading templates and the Concepts section name, not executable expressions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:118:ruby-shell-backtick-execution","reason":"Concepts and Stress test are document headings in workflow guidance, not shell substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:124:ruby-shell-backtick-execution","reason":"The span describes critique disposition and human selection; backticks delimit section and metadata names.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:133:ruby-shell-backtick-execution","reason":"decided and Decision log identify recorded human decisions, not executable commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:135:ruby-shell-backtick-execution","reason":"draft is a session status and Design is a section heading; neither is executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:140:ruby-shell-backtick-execution","reason":"The backticks name the Design heading and Mermaid diagram format, not executable substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:142:ruby-shell-backtick-execution","reason":"The text requests a Mermaid diagram and a risks section in the dossier, not shell execution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:144:ruby-shell-backtick-execution","reason":"Risks and open questions and Handoff are document headings, not commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:149:ruby-shell-backtick-execution","reason":"The span describes handoff sections and active status metadata, not executable substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:157:ruby-shell-backtick-execution","reason":"status: active and feeds are session metadata fields, not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:173:ruby-shell-backtick-execution","reason":"The instruction records the human selection in metadata fields rather than invoking shell commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:174:ruby-shell-backtick-execution","reason":"feeds is metadata and the subsequent Markdown fence introduces a session template, not executable shell code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:182:ruby-shell-backtick-execution","reason":"The fenced block is a Markdown session record with front matter and headings, not a shell program.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:209:ruby-shell-backtick-execution","reason":"The match bridges a closing Markdown fence and an Options heading, not a command substitution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:211:ruby-shell-backtick-execution","reason":"Options and heading markers specify the structure of a decision session, not executable expressions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:212:ruby-shell-backtick-execution","reason":"The line names document sections and explains exec-store-check validation; actual helper execution is separately retained at line 267.","verdict":"false_positive","confidence":0.98},{"id":"external_commands:SKILL.md:214:ruby-shell-backtick-execution","reason":"The span formats decided metadata and artifact filenames, not executable commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:217:ruby-shell-backtick-execution","reason":"prior-art.md, concept paths, and critique paths name session artifacts, not executable substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:218:ruby-shell-backtick-execution","reason":"dispatches.md and INDEX.md identify local tracking documents, not shell commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:221:ruby-shell-backtick-execution","reason":"The backticks format an index filename, a session identifier, and a document kind, not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:224:ruby-shell-backtick-execution","reason":"The span describes auditable skip notes and names a related skill; the backticks are document formatting.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:230:ruby-shell-backtick-execution","reason":"The line names an optional visual companion and links its documentation, without specifying a shell command.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:234:ruby-shell-backtick-execution","reason":"session.md is the required text record and active is a metadata value, not an executable substitution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:239:ruby-shell-backtick-execution","reason":"The span introduces document self-critique and formatted status and section names, not shell execution.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:251:ruby-shell-backtick-execution","reason":"Design and Handoff identify sections checked for flow coverage and traceability, not executable expressions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:257:ruby-shell-backtick-execution","reason":"The match bridges a Handoff heading and the next backtick in verification prose. The actual helper instruction is separately adjudicated at line 267.","verdict":"false_positive","confidence":0.98},{"id":"external_commands:SKILL.md:267:ruby-shell-backtick-execution","reason":"The workflow requires running exec-store-check from a sibling package absent from this review. Unknown helper effects remain an execution risk.","verdict":"confirmed","severity":"medium","confidence":0.6},{"id":"external_commands:SKILL.md:269:ruby-shell-backtick-execution","reason":"Concepts and concepts/ name a document section and artifact directory, not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:270:ruby-shell-backtick-execution","reason":"Stress test and critique filenames identify records to check for existence, not shell substitutions.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:271:ruby-shell-backtick-execution","reason":"critique-R<nn>.md and dispatches.md name session artifacts, not commands.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:273:ruby-shell-backtick-execution","reason":"feeds and status: active are metadata fields checked before handoff, not executable code.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:274:ruby-shell-backtick-execution","reason":"The match bridges decided metadata and the next backtick. The separate helper execution instruction at line 275 remains retained.","verdict":"false_positive","confidence":0.98},{"id":"external_commands:SKILL.md:275:ruby-shell-backtick-execution","reason":"The workflow requires running exec-scan-secrets on session files, but its implementation is outside this review. Its access and side effects remain unverified.","verdict":"confirmed","severity":"medium","confidence":0.6},{"id":"filesystem:SKILL.md:43:path-traversal-sequence","reason":"The path is a fixed sibling helper reference, not attacker-controlled traversal. Its unreviewed execution is retained under the command finding at line 41.","verdict":"false_positive","confidence":0.94},{"id":"filesystem:SKILL.md:50:path-traversal-sequence","reason":"The parent-relative path is a fixed Markdown link to companion layout documentation, not arbitrary filesystem traversal.","verdict":"false_positive","confidence":0.99},{"id":"filesystem:SKILL.md:219:path-traversal-sequence","reason":"The fixed parent-relative Markdown link points to dispatch registry documentation, with no attacker-controlled path or write.","verdict":"false_positive","confidence":0.99},{"id":"filesystem:SKILL.md:231:path-traversal-sequence","reason":"The parent-relative path is a fixed link to optional visual companion documentation, not an arbitrary traversal operation.","verdict":"false_positive","confidence":0.99},{"id":"filesystem:SKILL.md:267:path-traversal-sequence","reason":"The path names a fixed sibling helper, not attacker-controlled traversal. Unverified execution is retained under the external command finding at this line.","verdict":"false_positive","confidence":0.94},{"id":"filesystem:SKILL.md:275:path-traversal-sequence","reason":"The executable path is a fixed sibling reference, not arbitrary traversal. Unverified helper execution is retained separately at this line.","verdict":"false_positive","confidence":0.94},{"id":"blocker:SKILL.md:43:system-reconnaissance","reason":"exec-id names a session identifier allocator, not a host identity command. Unverified helper behavior is retained under external execution at line 41.","verdict":"false_positive","confidence":0.97},{"id":"blocker:SKILL.md:55:system-reconnaissance","reason":"The lines open a Mermaid state diagram, not a system reconnaissance command.","verdict":"false_positive","confidence":0.99},{"id":"blocker:SKILL.md:260:system-reconnaissance","reason":"The question verifies that the human selected the design, not host identity or system information.","verdict":"false_positive","confidence":0.99},{"id":"blocker:SKILL.md:261:system-reconnaissance","reason":"The line asks whether the controller decided instead of the human; it contains no reconnaissance operation.","verdict":"false_positive","confidence":0.99},{"id":"blocker:SKILL.md:61:network-reconnaissance","reason":"Stress --> Diverge is a Mermaid state transition after failed concepts, not a network operation.","verdict":"false_positive","confidence":0.99},{"id":"blocker:SKILL.md:62:network-reconnaissance","reason":"Stress --> Converge is a Mermaid state transition after surviving concepts, not network reconnaissance.","verdict":"false_positive","confidence":0.99}],"semantic_findings":[{"title":"Public Records Lack Confidentiality Review","severity":"medium","locations":[{"file":"SKILL.md","line_end":90,"line_start":75},{"file":"SKILL.md","line_end":281,"line_start":275},{"file":"prior-art-scout-prompt.md","line_end":157,"line_start":138}],"confidence":0.86,"description":"The workflow records business constraints and repository findings in a store described as public. Only a secrets scan is required, leaving personal and proprietary information without explicit publication approval or redaction.","confidence_reasoning":"The source explicitly calls the store public and requires recording business constraints and repository details. Disclosure depends on actual inputs; no transmission is demonstrated."}],"subject_marketplace_commit_sha":"6d0b11444384184b7ae743742a7e233a9a705cd9","subject_content_hash":"d063fc8d2f2f276426ca759d5b76312506016fb12b4936561c9ab3cb55c72b70","subject_tree_hash":"44c9dec255d9e55390dec8bcfa68a6cf47d0c0c637dd7710df01bbcfd34ca4d0","subject_plugin_path":"skills/atri10/executor-brainstorm","audit_payload_hash":"15c26807788faef05b945be456a302c9","confirmed_risk_level":"medium","scanner_version":"3.0.0","policy_version":"skillstore-security-audit-policy-v1","subject":{"marketplaceCommitSha":"6d0b11444384184b7ae743742a7e233a9a705cd9","contentHash":"d063fc8d2f2f276426ca759d5b76312506016fb12b4936561c9ab3cb55c72b70","treeHash":"44c9dec255d9e55390dec8bcfa68a6cf47d0c0c637dd7710df01bbcfd34ca4d0","pluginPath":"skills/atri10/executor-brainstorm","auditPayloadHash":"15c26807788faef05b945be456a302c9"},"scannerVersion":"3.0.0","policyVersion":"skillstore-security-audit-policy-v1"},"auditTranslation":null,"localization":{"requestedLocale":"en","contentLocale":"en","availableLocales":["en"],"fallbackToEnglish":false},"attestation":{"availability":"issued","url":"/api/skills/atri10-executor-brainstorm/audits/1/attestation","status":"active"},"trust":{"publicState":"public","auditState":"complete","auditCurrentness":null,"confirmedRiskLevel":"medium","confirmedFindingCount":1,"capabilityReviewCount":3,"needsReviewCount":0,"falsePositiveCount":0,"agentAutoInstallPolicy":"allowed","manualInstallPolicy":"allowed","artifactSignatureState":"available","attestationState":"active","verificationState":"not_verified"},"isLatest":true}}