{"data":{"skill":{"slug":"zl2023github-arch-tech-evaluation","name":"arch-tech-evaluation","icon":"📦","repo":"https://github.com/zl2023github/software-engineer-skills/tree/main/software-architecture/arch-tech-evaluation","status":"approved","author":"zl2023github","authorVersion":null,"skillstoreRevision":2},"audit":{"id":"15e79ddb-bbe2-46c2-8c60-49b6c3383831","skill_id":"7df5b024-4f30-4be6-989f-227ab367fa67","version":4,"content_hash":"v3:88a8e9a07f4c54ab105c1c41b6267c287146b07b:e1b9d66090abccc672dc2fdcc93a95f694853bd586b5fb9fc1fe9993dc117322:21fff2d4e61cada7cbb87f0d7870ad2b77f2ec36f638694b2b596be1ce847888:736b696c6c732f7a6c323032336769746875622f617263682d746563682d6576616c756174696f6e:7b925b49f6b6a87014abfe3a6e30662c","risk_level":"safe","is_blocked":false,"safe_to_publish":true,"analysis_status":"ok","agent_auto_install_policy":"allowed","manual_install_policy":"allowed","summary":"All four static findings are false positives. The command alerts identify Markdown fences, while the entropy alerts identify readable Chinese Markdown rather than encoded payloads. No prompt injection, data exfiltration, or executable behavior was found.","remediation":[],"risk_factor_evidence":[{"factor":"external_commands","evidence":[{"file":"SKILL.md","line_end":72,"line_start":40},{"file":"SKILL.md","line_end":76,"line_start":72}]}],"critical_findings":[],"high_findings":[],"medium_findings":[],"low_findings":[],"dangerous_patterns":[],"files_scanned":2,"total_lines":179,"audit_model":"codex","audited_at":"2026-07-24T02:10:43.622+00:00","created_at":"2026-07-26T15:26:23.793402+00:00","static_findings":[{"id":"external_commands:SKILL.md:40:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":72,"severity":"medium","line_start":40},{"id":"external_commands:SKILL.md:72:ruby-shell-backtick-execution","file":"SKILL.md","pattern":"Ruby/shell backtick execution","snippet":"```","category":"external_commands","line_end":76,"severity":"medium","line_start":72},{"id":"obfuscation:references/message-queue-evaluation.md:1:heuristic-high-file-entropy-6-58-bits-possible-b","file":"references/message-queue-evaluation.md","pattern":"[HEURISTIC] High file entropy (6.58 bits) - possible binary/encrypted content","snippet":"File: references/message-queue-evaluation.md","category":"obfuscation","line_end":1,"severity":"high","line_start":1},{"id":"obfuscation:SKILL.md:1:heuristic-high-file-entropy-6-01-bits-possible-b","file":"SKILL.md","pattern":"[HEURISTIC] High file entropy (6.01 bits) - possible binary/encrypted content","snippet":"File: SKILL.md","category":"obfuscation","line_end":1,"severity":"high","line_start":1}],"finding_verdicts":[{"id":"external_commands:SKILL.md:40:ruby-shell-backtick-execution","reason":"Lines 40 through 72 contain a fenced Markdown workflow diagram. The backticks delimit documentation and do not invoke Ruby, a shell, or any command.","verdict":"false_positive","confidence":0.99},{"id":"external_commands:SKILL.md:72:ruby-shell-backtick-execution","reason":"Line 72 closes the workflow fence, and line 76 opens a Markdown report template. These are documentation delimiters with no executable command or interpreter.","verdict":"false_positive","confidence":0.99},{"id":"obfuscation:references/message-queue-evaluation.md:1:heuristic-high-file-entropy-6-58-bits-possible-b","reason":"The file is readable Chinese Markdown containing headings, lists, measurements, and a comparison table. Its varied UTF-8 text explains the entropy without binary, encrypted, or encoded content.","verdict":"false_positive","confidence":0.98},{"id":"obfuscation:SKILL.md:1:heuristic-high-file-entropy-6-01-bits-possible-b","reason":"The file is readable Chinese Markdown with front matter, prose, tables, and fenced templates. No binary data, encrypted payload, or obfuscated instructions are present.","verdict":"false_positive","confidence":0.98}],"semantic_findings":[],"subject_marketplace_commit_sha":"88a8e9a07f4c54ab105c1c41b6267c287146b07b","subject_content_hash":"e1b9d66090abccc672dc2fdcc93a95f694853bd586b5fb9fc1fe9993dc117322","subject_tree_hash":"21fff2d4e61cada7cbb87f0d7870ad2b77f2ec36f638694b2b596be1ce847888","subject_plugin_path":"skills/zl2023github/arch-tech-evaluation","audit_payload_hash":"7b925b49f6b6a87014abfe3a6e30662c","confirmed_risk_level":"safe","scanner_version":"3.0.0","policy_version":"skillstore-security-audit-policy-v1","subject":{"marketplaceCommitSha":"88a8e9a07f4c54ab105c1c41b6267c287146b07b","contentHash":"e1b9d66090abccc672dc2fdcc93a95f694853bd586b5fb9fc1fe9993dc117322","treeHash":"21fff2d4e61cada7cbb87f0d7870ad2b77f2ec36f638694b2b596be1ce847888","pluginPath":"skills/zl2023github/arch-tech-evaluation","auditPayloadHash":"7b925b49f6b6a87014abfe3a6e30662c"},"scannerVersion":"3.0.0","policyVersion":"skillstore-security-audit-policy-v1"},"auditTranslation":null,"localization":{"requestedLocale":"en","contentLocale":"en","availableLocales":["en"],"fallbackToEnglish":false},"attestation":{"availability":"issued","url":"/api/skills/zl2023github-arch-tech-evaluation/audits/4/attestation","status":"active"},"trust":{"publicState":"public","auditState":"complete","auditCurrentness":null,"confirmedRiskLevel":"safe","confirmedFindingCount":0,"capabilityReviewCount":0,"needsReviewCount":0,"falsePositiveCount":0,"agentAutoInstallPolicy":"allowed","manualInstallPolicy":"allowed","artifactSignatureState":"available","attestationState":"active","verificationState":"not_verified"},"isLatest":true}}