سجل التدقيق
FlowGram Custom Node Development - 9 عمليات التدقيق
مقارنة الإصدارات
التغييرات في القدرات والنتائج عبر الإصدارات المدقّقة، الأحدث أولاً.
| الإصدار | التاريخ | النتيجة | عناصر المراجعة | التغيير مقارنةً بالسابقة |
|---|---|---|---|---|
| v9 الأحدث | ١٩ يوليو ٢٠٢٦، ٠٢:٤٢ ص | لا توجد نتائج مؤكَّدة | 0 | لا تغيير في القدرات |
| v8 | ٧ يوليو ٢٠٢٦، ١١:٢٤ م | لا توجد نتائج مؤكَّدة | 0 | لا تغيير في القدرات |
| v7 | ٦ يوليو ٢٠٢٦، ٠٥:١٦ ص | لا توجد نتائج مؤكَّدة | 0 | لا تغيير في القدرات |
| v6 | ٢٨ يونيو ٢٠٢٦، ٠٥:١٠ م | لا توجد نتائج مؤكَّدة | 1 | لا تغيير في القدرات |
| v5 | ١٦ يناير ٢٠٢٦، ٠٨:٥١ م | لا توجد نتائج مؤكَّدة | 0 | لا تغيير في القدرات |
| v4 | ١٦ يناير ٢٠٢٦، ٠٨:٥١ م | لا توجد نتائج مؤكَّدة | 0 | الوصول إلى الشبكةالوصول إلى نظام الملفاتالأوامر الخارجية |
| v3 | ٦ يناير ٢٠٢٦، ٠٧:٣١ ص | لا توجد نتائج مؤكَّدة | 0 | لا تغيير في القدرات |
| v2 | ٦ يناير ٢٠٢٦، ٠٧:٣١ ص | لا توجد نتائج مؤكَّدة | 0 | لا تغيير في القدرات |
| v1 | ٦ يناير ٢٠٢٦، ٠٧:٣١ ص | لا توجد نتائج مؤكَّدة | 0 | الأساس |
١٩ يوليو ٢٠٢٦، ٠٢:٤٢ ص
All 103 static findings are false positives caused by Markdown formatting, TypeScript syntax, fixed imports, generic field names, and documentation links. No prompt injection, malicious intent, data exfiltration, unsafe path handling, or concealed payload was found.
عوامل الخطر
⚙️ الأوامر الخارجية (50)
🌐 الوصول إلى الشبكة (4)
📁 الوصول إلى نظام الملفات (13)
٧ يوليو ٢٠٢٦، ١١:٢٤ م
The static alerts were reviewed against SKILL.md and the cited template files. The findings are false positives caused by markdown backticks, static TypeScript imports, documentation URLs, placeholder fields, and normal package imports. No prompt injection text, data exfiltration intent, hidden execution path, or malicious behavior was found.
عوامل الخطر
⚙️ الأوامر الخارجية (82)
🌐 الوصول إلى الشبكة (4)
📁 الوصول إلى نظام الملفات (13)
٦ يوليو ٢٠٢٦، ٠٥:١٦ ص
All 103 static findings were false positives after context review. The hits are Markdown syntax, documentation links, static TypeScript imports, template literals, a normal form field name, and readable prose; no prompt injection or malicious intent was found.
عوامل الخطر
⚙️ الأوامر الخارجية (82)
🌐 الوصول إلى الشبكة (4)
📁 الوصول إلى نظام الملفات (13)
٢٨ يونيو ٢٠٢٦، ٠٥:١٠ م
Static analysis reported many command, filesystem, network, crypto, and heuristic issues, but context shows they are documentation snippets, placeholder templates, relative imports, and reference links. No prompt injection, credential access, data exfiltration, or malicious execution intent was found. The remaining risk is low because users may copy local shell commands that modify project files.
عناصر مراجعة القدرات (1)
هذه قدرات محلية حقيقية قد يُتوقع وجودها لهذه المهارة، لذا فهي تتطلب مراجعة ولكن لا تُحتسب كسلوك خبيث مؤكد.
تم تجاهل الإيجابيات الكاذبة الثابتة (3)
تم تجاهل هذه المطابقات الثابتة بواسطة المراجعة الدلالية أو لأنها طابقت رموزًا خاصة بالمخطط فقط، لذا تُعرض للشفافية لكنها لا تؤثر في درجة الجودة.
عوامل الخطر
⚙️ الأوامر الخارجية (6)
🌐 الوصول إلى الشبكة (2)
١٦ يناير ٢٠٢٦، ٠٨:٥١ م
This skill contains only documentation and TypeScript/React templates for creating custom workflow nodes. All 194 static findings are false positives triggered by pattern detection in markdown code blocks and template placeholders. No network calls, file I/O with user input, command execution, or credential access exist. The skill uses safe patterns including nanoid for ID generation and standard relative imports.
عوامل الخطر
🌐 الوصول إلى الشبكة (4)
📁 الوصول إلى نظام الملفات (25)
⚙️ الأوامر الخارجية (117)
١٦ يناير ٢٠٢٦، ٠٨:٥١ م
This skill contains only documentation and TypeScript/React templates for creating custom workflow nodes. All 194 static findings are false positives triggered by pattern detection in markdown code blocks and template placeholders. No network calls, file I/O with user input, command execution, or credential access exist. The skill uses safe patterns including nanoid for ID generation and standard relative imports.
عوامل الخطر
🌐 الوصول إلى الشبكة (4)
📁 الوصول إلى نظام الملفات (25)
⚙️ الأوامر الخارجية (117)
٦ يناير ٢٠٢٦، ٠٧:٣١ ص
This skill consists entirely of documentation and TypeScript/React templates for creating custom workflow nodes. No network calls, file I/O beyond imports, command execution, or environment variable access were detected. All code follows standard FlowGram patterns and is safe for users.
٦ يناير ٢٠٢٦، ٠٧:٣١ ص
This skill consists entirely of documentation and TypeScript/React templates for creating custom workflow nodes. No network calls, file I/O beyond imports, command execution, or environment variable access were detected. All code follows standard FlowGram patterns and is safe for users.
٦ يناير ٢٠٢٦، ٠٧:٣١ ص
This skill consists entirely of documentation and TypeScript/React templates for creating custom workflow nodes. No network calls, file I/O beyond imports, command execution, or environment variable access were detected. All code follows standard FlowGram patterns and is safe for users.