{"data":{"skill":{"slug":"stablyai-orchestration","name":"orchestration","icon":"📦","repo":"https://github.com/stablyai/orca/tree/main/skills/orchestration/","status":"approved","author":"stablyai","authorVersion":null,"skillstoreRevision":null},"audit":{"id":"294f5766-f6cc-409a-9ee0-17d148cf9751","skill_id":"45692d31-3c0c-4826-ab59-a38ad78ccb8b","version":1,"content_hash":"v2:e82d22ace449afa2495e5c931b687eb19f360093:5e975a5adf72ff9201d0bdf42195bc8ae9be6e6d03a8af924b2eb8b41ea953be:f0473b41e002336e483893c06a1581da2482029f7dcdc84671ad8c983645c87a:4d164c248e52bf57f42d4f7f00ca0f29","risk_level":"safe","is_blocked":false,"safe_to_publish":true,"analysis_status":"ok","agent_auto_install_policy":"allowed","manual_install_policy":"allowed","summary":"The static findings are false positives caused by Markdown backticks and documented Orca CLI examples in SKILL.md. I found no prompt injection attempt, malware intent, data exfiltration behavior, or hidden executable code in the reviewed skill file.","remediation":[{"issue":"Markdown command examples trigger static external-command detections.","severity":"low","suggestion":"Keep command examples explicit, scoped to Orca, and paired with clear user-authorization language for destructive or state-reset operations."},{"issue":"Prompt placeholders may contain user-supplied text when agents copy examples into a shell.","severity":"low","suggestion":"Document that task briefs and prompts must be passed with safe argument handling and proper shell quoting."}],"risk_factor_evidence":[{"factor":"external_commands","evidence":[{"file":"SKILL.md","line_end":7,"line_start":7},{"file":"SKILL.md","line_end":10,"line_start":10},{"file":"SKILL.md","line_end":21,"line_start":21},{"file":"SKILL.md","line_end":25,"line_start":25},{"file":"SKILL.md","line_end":27,"line_start":27},{"file":"SKILL.md","line_end":34,"line_start":31},{"file":"SKILL.md","line_end":41,"line_start":34},{"file":"SKILL.md","line_end":41,"line_start":41},{"file":"SKILL.md","line_end":50,"line_start":49},{"file":"SKILL.md","line_end":50,"line_start":50},{"file":"SKILL.md","line_end":56,"line_start":52},{"file":"SKILL.md","line_end":56,"line_start":56},{"file":"SKILL.md","line_end":60,"line_start":60},{"file":"SKILL.md","line_end":64,"line_start":64},{"file":"SKILL.md","line_end":65,"line_start":65},{"file":"SKILL.md","line_end":71,"line_start":66},{"file":"SKILL.md","line_end":76,"line_start":71},{"file":"SKILL.md","line_end":80,"line_start":76},{"file":"SKILL.md","line_end":86,"line_start":80},{"file":"SKILL.md","line_end":90,"line_start":86},{"file":"SKILL.md","line_end":91,"line_start":90},{"file":"SKILL.md","line_end":91,"line_start":91},{"file":"SKILL.md","line_end":92,"line_start":92},{"file":"SKILL.md","line_end":95,"line_start":94},{"file":"SKILL.md","line_end":96,"line_start":95},{"file":"SKILL.md","line_end":96,"line_start":96},{"file":"SKILL.md","line_end":97,"line_start":97},{"file":"SKILL.md","line_end":99,"line_start":98},{"file":"SKILL.md","line_end":100,"line_start":99},{"file":"SKILL.md","line_end":100,"line_start":100},{"file":"SKILL.md","line_end":112,"line_start":106},{"file":"SKILL.md","line_end":114,"line_start":112},{"file":"SKILL.md","line_end":114,"line_start":114},{"file":"SKILL.md","line_end":118,"line_start":118},{"file":"SKILL.md","line_end":119,"line_start":119},{"file":"SKILL.md","line_end":130,"line_start":124},{"file":"SKILL.md","line_end":132,"line_start":130},{"file":"SKILL.md","line_end":132,"line_start":132},{"file":"SKILL.md","line_end":140,"line_start":134},{"file":"SKILL.md","line_end":140,"line_start":140},{"file":"SKILL.md","line_end":144,"line_start":144},{"file":"SKILL.md","line_end":150,"line_start":148},{"file":"SKILL.md","line_end":152,"line_start":150},{"file":"SKILL.md","line_end":156,"line_start":152},{"file":"SKILL.md","line_end":158,"line_start":156},{"file":"SKILL.md","line_end":162,"line_start":158},{"file":"SKILL.md","line_end":162,"line_start":162},{"file":"SKILL.md","line_end":169,"line_start":164},{"file":"SKILL.md","line_end":171,"line_start":169},{"file":"SKILL.md","line_end":173,"line_start":171},{"file":"SKILL.md","line_end":173,"line_start":173},{"file":"SKILL.md","line_end":179,"line_start":177},{"file":"SKILL.md","line_end":183,"line_start":179},{"file":"SKILL.md","line_end":185,"line_start":183},{"file":"SKILL.md","line_end":185,"line_start":185},{"file":"SKILL.md","line_end":192,"line_start":187},{"file":"SKILL.md","line_end":194,"line_start":192},{"file":"SKILL.md","line_end":194,"line_start":194},{"file":"SKILL.md","line_end":196,"line_start":196},{"file":"SKILL.md","line_end":202,"line_start":198},{"file":"SKILL.md","line_end":209,"line_start":202},{"file":"SKILL.md","line_end":211,"line_start":209},{"file":"SKILL.md","line_end":211,"line_start":211},{"file":"SKILL.md","line_end":213,"line_start":213},{"file":"SKILL.md","line_end":218,"line_start":217},{"file":"SKILL.md","line_end":219,"line_start":218},{"file":"SKILL.md","line_end":219,"line_start":219},{"file":"SKILL.md","line_end":222,"line_start":221},{"file":"SKILL.md","line_end":222,"line_start":222},{"file":"SKILL.md","line_end":229,"line_start":224},{"file":"SKILL.md","line_end":235,"line_start":229},{"file":"SKILL.md","line_end":239,"line_start":235},{"file":"SKILL.md","line_end":239,"line_start":239},{"file":"SKILL.md","line_end":241,"line_start":241}]}],"critical_findings":[],"high_findings":[],"medium_findings":[],"low_findings":[],"dangerous_patterns":[],"files_scanned":1,"total_lines":242,"audit_model":"codex","audited_at":"2026-07-06T12:57:46.37+00:00","created_at":"2026-07-06T15:52:33.078378+00:00","static_findings":[{"id":"external_commands:SKILL.md:7:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"across agents. Use `orca-cli` instead for full ownership handoffs, including","category":"external_commands","line_end":7,"severity":"medium","line_start":7},{"id":"external_commands:SKILL.md:10:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"supervise, monitor, wait for results, or coordinate a DAG. Use `orca-cli` for","category":"external_commands","line_end":10,"severity":"medium","line_start":10},{"id":"external_commands:SKILL.md:21:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Use this skill when coordination state matters. For lightweight terminal prompts or basic worktree/t","category":"external_commands","line_end":21,"severity":"medium","line_start":21},{"id":"external_commands:SKILL.md:25:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"If a task says to use Orca orchestration, the coordinator must create Orca runtime state with `orca ","category":"external_commands","line_end":25,"severity":"medium","line_start":25},{"id":"external_commands:SKILL.md:27:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Do not substitute non-Orca subagent tools, generic agent-spawn APIs, or chat-only parallel worker fe","category":"external_commands","line_end":27,"severity":"medium","line_start":27},{"id":"external_commands:SKILL.md:31:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":34,"severity":"medium","line_start":31},{"id":"external_commands:SKILL.md:34:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":41,"severity":"medium","line_start":34},{"id":"external_commands:SKILL.md:41:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Dispatch structured tasks to workers and wait for `worker_done` or `escalation`.","category":"external_commands","line_end":41,"severity":"medium","line_start":41},{"id":"external_commands:SKILL.md:49:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `orca status --json` should show a running runtime.","category":"external_commands","line_end":50,"severity":"medium","line_start":49},{"id":"external_commands:SKILL.md:50:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `orca` must be on PATH (`orca-ide` on Linux).","category":"external_commands","line_end":50,"severity":"medium","line_start":50},{"id":"external_commands:SKILL.md:52:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `orca orchestration` commands are RPC calls to the running Orca runtime.","category":"external_commands","line_end":56,"severity":"medium","line_start":52},{"id":"external_commands:SKILL.md:56:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Orchestration messages and tasks are runtime-global. Completion authority comes from the active disp","category":"external_commands","line_end":56,"severity":"medium","line_start":56},{"id":"external_commands:SKILL.md:60:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Coordinated subtask: a live coordinator owns the DAG and waits on this dispatch. Follow the preamb","category":"external_commands","line_end":60,"severity":"medium","line_start":60},{"id":"external_commands:SKILL.md:64:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Do not use `orca orchestration dispatch --inject` for full handoffs. It injects a coordinator prea","category":"external_commands","line_end":64,"severity":"medium","line_start":64},{"id":"external_commands:SKILL.md:65:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Do not run `orca orchestration task-create`, `orca orchestration dispatch --inject`, or `orca orch","category":"external_commands","line_end":65,"severity":"medium","line_start":65},{"id":"external_commands:SKILL.md:66:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- A review-only `worker_done` reports findings; it does not authorize coordinator file edits. After ","category":"external_commands","line_end":71,"severity":"medium","line_start":66},{"id":"external_commands:SKILL.md:71:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":76,"severity":"medium","line_start":71},{"id":"external_commands:SKILL.md:76:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":80,"severity":"medium","line_start":76},{"id":"external_commands:SKILL.md:80:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":86,"severity":"medium","line_start":80},{"id":"external_commands:SKILL.md:86:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":90,"severity":"medium","line_start":86},{"id":"external_commands:SKILL.md:90:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Omit `--from` unless impersonating another terminal; Orca auto-resolves it from the current termin","category":"external_commands","line_end":91,"severity":"medium","line_start":90},{"id":"external_commands:SKILL.md:91:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- While supervising workers manually, use `check --wait --types worker_done,escalation,decision_gate","category":"external_commands","line_end":91,"severity":"medium","line_start":91},{"id":"external_commands:SKILL.md:92:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Treat a `check --wait` timeout or `{count:0}` as a checkpoint, not a worker failure. Long coding t","category":"external_commands","line_end":92,"severity":"medium","line_start":92},{"id":"external_commands:SKILL.md:94:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Use `ask` when a worker needs a blocking answer from the coordinator; it waits for the reply and r","category":"external_commands","line_end":95,"severity":"medium","line_start":94},{"id":"external_commands:SKILL.md:95:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `check --wait` returns one message at a time. If N workers may finish together, loop N times and d","category":"external_commands","line_end":96,"severity":"medium","line_start":95},{"id":"external_commands:SKILL.md:96:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Group addresses include `@all`, `@idle`, `@claude`, `@codex`, `@opencode`, `@gemini`, `@droid`, an","category":"external_commands","line_end":96,"severity":"medium","line_start":96},{"id":"external_commands:SKILL.md:97:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Message types include `status`, `dispatch`, `worker_done`, `merge_ready`, `escalation`, `handoff`,","category":"external_commands","line_end":97,"severity":"medium","line_start":97},{"id":"external_commands:SKILL.md:98:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Use group addresses only for messages that are genuinely useful to many terminals, such as `status","category":"external_commands","line_end":99,"severity":"medium","line_start":98},{"id":"external_commands:SKILL.md:99:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `worker_done` must target the concrete coordinator handle from the live preamble. It is completion","category":"external_commands","line_end":100,"severity":"medium","line_start":99},{"id":"external_commands:SKILL.md:100:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `heartbeat` is also dispatch-scoped. Send it only to the concrete coordinator handle with both `ta","category":"external_commands","line_end":100,"severity":"medium","line_start":100},{"id":"external_commands:SKILL.md:106:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":112,"severity":"medium","line_start":106},{"id":"external_commands:SKILL.md:112:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":114,"severity":"medium","line_start":112},{"id":"external_commands:SKILL.md:114:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Task statuses: `pending`, `ready`, `dispatched`, `completed`, `failed`, `blocked`.","category":"external_commands","line_end":114,"severity":"medium","line_start":114},{"id":"external_commands:SKILL.md:118:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- `--inject` sends the task spec plus preamble into a recognized agent CLI so it can report `worker_","category":"external_commands","line_end":118,"severity":"medium","line_start":118},{"id":"external_commands:SKILL.md:119:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- If the target is a bare shell, omit `--inject`, dispatch for tracking if needed, then send the pro","category":"external_commands","line_end":119,"severity":"medium","line_start":119},{"id":"external_commands:SKILL.md:124:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":130,"severity":"medium","line_start":124},{"id":"external_commands:SKILL.md:130:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":132,"severity":"medium","line_start":130},{"id":"external_commands:SKILL.md:132:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`run` returns immediately with a run ID. Query progress with `task-list`. Use `ask` for worker-to-co","category":"external_commands","line_end":132,"severity":"medium","line_start":132},{"id":"external_commands:SKILL.md:134:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Recovery only: `orca orchestration reset --tasks|--messages|--all --json` clears runtime-global orch","category":"external_commands","line_end":140,"severity":"medium","line_start":134},{"id":"external_commands:SKILL.md:140:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Treat these as full handoff requests by default: \"hand off\", \"handoff\", \"handover\", \"give this to an","category":"external_commands","line_end":140,"severity":"medium","line_start":140},{"id":"external_commands:SKILL.md:144:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Do not run `orca orchestration task-create`, `orca orchestration dispatch --inject`, or `orca orches","category":"external_commands","line_end":144,"severity":"medium","line_start":144},{"id":"external_commands:SKILL.md:148:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":150,"severity":"medium","line_start":148},{"id":"external_commands:SKILL.md:150:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":152,"severity":"medium","line_start":150},{"id":"external_commands:SKILL.md:152:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Before creating a new worktree from an active feature branch, decide and state whether the desired O","category":"external_commands","line_end":156,"severity":"medium","line_start":152},{"id":"external_commands:SKILL.md:156:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":158,"severity":"medium","line_start":156},{"id":"external_commands:SKILL.md:158:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":162,"severity":"medium","line_start":158},{"id":"external_commands:SKILL.md:162:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`orca worktree create --agent codex --prompt ...` launches the known Codex agent but does not accept","category":"external_commands","line_end":162,"severity":"medium","line_start":162},{"id":"external_commands:SKILL.md:164:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":169,"severity":"medium","line_start":164},{"id":"external_commands:SKILL.md:169:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":171,"severity":"medium","line_start":169},{"id":"external_commands:SKILL.md:171:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Wait only for `tui-idle` when needed to avoid losing the prompt. Do not monitor task completion.","category":"external_commands","line_end":173,"severity":"medium","line_start":171},{"id":"external_commands:SKILL.md:173:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`--no-parent` only controls Orca lineage; it does not choose the Git base. If the work should start ","category":"external_commands","line_end":173,"severity":"medium","line_start":173},{"id":"external_commands:SKILL.md:177:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Choose the worker location before creating a terminal. `Fresh worker` means a fresh agent session, n","category":"external_commands","line_end":179,"severity":"medium","line_start":177},{"id":"external_commands:SKILL.md:179:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":183,"severity":"medium","line_start":179},{"id":"external_commands:SKILL.md:183:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":185,"severity":"medium","line_start":183},{"id":"external_commands:SKILL.md:185:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Reuse an idle agent in the required worktree only if the prompt allows reuse; otherwise create a fre","category":"external_commands","line_end":185,"severity":"medium","line_start":185},{"id":"external_commands:SKILL.md:187:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":192,"severity":"medium","line_start":187},{"id":"external_commands:SKILL.md:192:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":194,"severity":"medium","line_start":192},{"id":"external_commands:SKILL.md:194:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"For new-worktree workers, read the id from `worktree create`, then use `terminal list` to get the ag","category":"external_commands","line_end":194,"severity":"medium","line_start":194},{"id":"external_commands:SKILL.md:196:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Use `orca worktree create --prompt ...` or `orca terminal send ...` for full handoffs or untracked/l","category":"external_commands","line_end":196,"severity":"medium","line_start":196},{"id":"external_commands:SKILL.md:198:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Sidebar lineage and orchestration lifecycle are related but not identical. A same-worktree worker cr","category":"external_commands","line_end":202,"severity":"medium","line_start":198},{"id":"external_commands:SKILL.md:202:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":209,"severity":"medium","line_start":202},{"id":"external_commands:SKILL.md:209:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":211,"severity":"medium","line_start":209},{"id":"external_commands:SKILL.md:211:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"If an older CLI rejects `worktree create --agent`, create the worktree normally, then run `orca term","category":"external_commands","line_end":211,"severity":"medium","line_start":211},{"id":"external_commands:SKILL.md:213:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Wait for `tui-idle` before dispatching. Always pass `--timeout-ms`; real coding tasks can take 15-60","category":"external_commands","line_end":213,"severity":"medium","line_start":213},{"id":"external_commands:SKILL.md:217:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Workers with a valid live preamble must send `worker_done` exactly once, even on failure:","category":"external_commands","line_end":218,"severity":"medium","line_start":217},{"id":"external_commands:SKILL.md:218:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`orca orchestration send --to <coordinator_handle> --type worker_done --subject \"<short status>\" --b","category":"external_commands","line_end":219,"severity":"medium","line_start":218},{"id":"external_commands:SKILL.md:219:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- After sending `worker_done`, end your turn and idle at the agent prompt. Do not poll or keep calli","category":"external_commands","line_end":219,"severity":"medium","line_start":219},{"id":"external_commands:SKILL.md:221:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"`orca orchestration send --to <coordinator_handle> --type heartbeat --subject \"alive\" --payload '{\"t","category":"external_commands","line_end":222,"severity":"medium","line_start":221},{"id":"external_commands:SKILL.md:222:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- If blocked before completion, use `ask`; use `escalation` only when ownership is valid and the coo","category":"external_commands","line_end":222,"severity":"medium","line_start":222},{"id":"external_commands:SKILL.md:224:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"- Coordinators should use `task-list --ready` as external memory, dispatch parallel waves, and avoid","category":"external_commands","line_end":229,"severity":"medium","line_start":224},{"id":"external_commands:SKILL.md:229:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```bash","category":"external_commands","line_end":235,"severity":"medium","line_start":229},{"id":"external_commands:SKILL.md:235:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":239,"severity":"medium","line_start":235},{"id":"external_commands:SKILL.md:239:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Coordinator: confirm `orca status --json`, inspect `task-list`/`dispatch-show` if inheriting state, ","category":"external_commands","line_end":239,"severity":"medium","line_start":239},{"id":"external_commands:SKILL.md:241:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"Worker: if the current prompt contains a live dispatch preamble, do the task, use `ask` for blocking","category":"external_commands","line_end":241,"severity":"medium","line_start":241},{"id":"blocker:SKILL.md:9:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"agent\", or \"another worktree\" when the user did not explicitly ask to","category":"blocker","line_end":9,"severity":"low","line_start":9},{"id":"blocker:SKILL.md:81:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"orca orchestration send --to <handle|@group> --subject <text> [--from <handle>] [--body <text>] [--t","category":"blocker","line_end":81,"severity":"low","line_start":81},{"id":"blocker:SKILL.md:83:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"orca orchestration reply --id <msg_id> --body <text> [--from <handle>] [--json]","category":"blocker","line_end":83,"severity":"low","line_start":83},{"id":"blocker:SKILL.md:91:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"- While supervising workers manually, use `check --wait --types worker_done,escalation,decision_gate","category":"blocker","line_end":91,"severity":"low","line_start":91},{"id":"blocker:SKILL.md:109:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"orca orchestration task-update --id <task_id> --status <status> [--result <json>] [--json]","category":"blocker","line_end":109,"severity":"low","line_start":109},{"id":"blocker:SKILL.md:126:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"orca orchestration gate-resolve --id <gate_id> --resolution <text> [--json]","category":"blocker","line_end":126,"severity":"low","line_start":126},{"id":"blocker:SKILL.md:144:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"Do not run `orca orchestration task-create`, `orca orchestration dispatch --inject`, or `orca orches","category":"blocker","line_end":144,"severity":"low","line_start":144},{"id":"blocker:SKILL.md:171:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"Wait only for `tui-idle` when needed to avoid losing the prompt. Do not monitor task completion.","category":"blocker","line_end":171,"severity":"low","line_start":171},{"id":"blocker:SKILL.md:194:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"For new-worktree workers, read the id from `worktree create`, then use `terminal list` to get the ag","category":"blocker","line_end":194,"severity":"low","line_start":194},{"id":"blocker:SKILL.md:217:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"- Workers with a valid live preamble must send `worker_done` exactly once, even on failure:","category":"blocker","line_end":217,"severity":"low","line_start":217},{"id":"blocker:SKILL.md:222:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"- If blocked before completion, use `ask`; use `escalation` only when ownership is valid and the coo","category":"blocker","line_end":222,"severity":"low","line_start":222},{"id":"blocker:SKILL.md:224:system-reconnaissance","file":"SKILL.md","pattern":"System reconnaissance","snippet":"- Coordinators should use `task-list --ready` as external memory, dispatch parallel waves, and avoid","category":"blocker","line_end":224,"severity":"low","line_start":224}],"finding_verdicts":[{"id":"external_commands:SKILL.md:7:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:10:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:21:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:25:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:27:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:31:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:34:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:41:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:49:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:50:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:52:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:56:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:60:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:64:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:65:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:66:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:71:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:76:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:80:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:86:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:90:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:91:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:92:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:94:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:95:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:96:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:97:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:98:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:99:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:100:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:106:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:112:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:114:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:118:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:119:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:124:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:130:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:132:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:134:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:140:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:144:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:148:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:150:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:152:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:156:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:158:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:162:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:164:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:169:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:171:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:173:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:177:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:179:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:183:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:185:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:187:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:192:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:194:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:196:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:198:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:202:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:209:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:211:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:213:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:217:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:218:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:219:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:221:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:222:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:224:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:229:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:235:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:239:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"external_commands:SKILL.md:241:ruby-shell-backtick-execution","reason":"The cited text is Markdown inline code or fenced bash documentation for Orca CLI usage, not Ruby code or executable backtick syntax. No script in this skill automatically executes these snippets.","verdict":"false_positive","confidence":0.94},{"id":"blocker:SKILL.md:9:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:81:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:83:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:91:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:109:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:126:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:144:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:171:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:194:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:217:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:222:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9},{"id":"blocker:SKILL.md:224:system-reconnaissance","reason":"The cited text describes normal Orca orchestration state, messages, or terminal coordination, not host reconnaissance or covert collection. The behavior is scoped to supervised agent workflow management.","verdict":"false_positive","confidence":0.9}],"semantic_findings":[],"subject_marketplace_commit_sha":null,"subject_content_hash":null,"subject_tree_hash":null,"subject_plugin_path":null,"audit_payload_hash":null,"confirmed_risk_level":null,"scanner_version":null,"policy_version":null,"subject":{"marketplaceCommitSha":null,"contentHash":null,"treeHash":null,"pluginPath":null,"auditPayloadHash":null},"scannerVersion":null,"policyVersion":null},"auditTranslation":null,"localization":{"requestedLocale":"en","contentLocale":"en","availableLocales":["en"],"fallbackToEnglish":false},"attestation":{"availability":"not_attestable","url":null,"status":null,"reason":"confirmed_risk_level does not match the canonical trust resolver"},"trust":{"publicState":"public","auditState":"complete","auditCurrentness":null,"confirmedRiskLevel":"safe","confirmedFindingCount":0,"capabilityReviewCount":0,"needsReviewCount":0,"falsePositiveCount":0,"agentAutoInstallPolicy":"allowed","manualInstallPolicy":"allowed","artifactSignatureState":"available","attestationState":"not_attestable","verificationState":"not_verified"},"isLatest":false}}