سجل التدقيق
doc-consistency-reviewer - 8 عمليات التدقيق
مقارنة الإصدارات
التغييرات في القدرات والنتائج عبر الإصدارات المدقّقة، الأحدث أولاً.
| الإصدار | التاريخ | النتيجة | عناصر المراجعة | التغيير مقارنةً بالسابقة |
|---|---|---|---|---|
| v8 الأحدث | ٦ يوليو ٢٠٢٦، ٠٢:٢٥ م | 1 مؤكَّد | 0 | لا تغيير في القدرات |
| v7 | ٦ يوليو ٢٠٢٦، ٠٢:٢٥ م | 1 مؤكَّد | 0 | الأوامر الخارجية الوصول إلى نظام الملفات |
| v6 | ٣٠ يونيو ٢٠٢٦، ٠٤:١٠ ص | 1 مؤكَّد | 0 | الوصول إلى نظام الملفات |
| v5 | ٢١ يناير ٢٠٢٦، ٠٥:١٤ م | لا توجد نتائج مؤكَّدة | 0 | الأوامر الخارجية |
| v4 | ١٧ يناير ٢٠٢٦، ٠٦:٣٢ ص | لا توجد نتائج مؤكَّدة | 0 | لا تغيير في القدرات |
| v3 | ١٧ يناير ٢٠٢٦، ٠٦:٣٢ ص | لا توجد نتائج مؤكَّدة | 0 | لا تغيير في القدرات |
| v2 | ١١ يناير ٢٠٢٦، ٠٥:٥٨ ص | لا توجد نتائج مؤكَّدة | 0 | لا تغيير في القدرات |
| v1 | ١١ يناير ٢٠٢٦، ٠٥:٥٨ ص | لا توجد نتائج مؤكَّدة | 0 | الأساس |
٦ يوليو ٢٠٢٦، ٠٢:٢٥ م
Static external-command findings are false positives from markdown fences, inline path formatting, and JSON strings. The entropy findings are false positives because the files are readable markdown. Semantic review found an embedded audit output file that claims the skill is safe and all findings are false positives.
مخاوف أمنية مؤكدة (1)
عوامل الخطر
⚙️ الأوامر الخارجية (41)
٦ يوليو ٢٠٢٦، ٠٢:٢٥ م
Static external-command findings are false positives from markdown fences, inline path formatting, and JSON strings. The entropy findings are false positives because the files are readable markdown. Semantic review found an embedded audit output file that claims the skill is safe and all findings are false positives.
مخاوف أمنية مؤكدة (1)
عوامل الخطر
⚙️ الأوامر الخارجية (41)
٣٠ يونيو ٢٠٢٦، ٠٤:١٠ ص
Static findings for shell backticks, weak cryptography, and obfuscation were evaluated as false positives from Markdown fences, example text, and multilingual documentation. No prompt injection, network access, executable script, or secret handling was found. The only retained risk is low because the skill asks the agent to write a local doc-consistency.md report.
مخاوف أمنية مؤكدة (1)
تم تجاهل الإيجابيات الكاذبة الثابتة (3)
تم تجاهل هذه المطابقات الثابتة بواسطة المراجعة الدلالية أو لأنها طابقت رموزًا خاصة بالمخطط فقط، لذا تُعرض للشفافية لكنها لا تؤثر في درجة الجودة.
عوامل الخطر
📁 الوصول إلى نظام الملفات (1)
٢١ يناير ٢٠٢٦، ٠٥:١٤ م
All static findings are false positives. The 64 external_commands detections are markdown code blocks with shell examples in documentation, not executable code. The 17 weak_crypto detections are base64-encoded content in JSON/YAML files. The 9 obfuscation detections are high-entropy structured data patterns, not obfuscated payloads. Network detection is legitimate metadata (GitHub source URL). No actual security risks found.
١٧ يناير ٢٠٢٦، ٠٦:٣٢ ص
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
عوامل الخطر
⚙️ الأوامر الخارجية (64)
الأنماط المكتشفة
١٧ يناير ٢٠٢٦، ٠٦:٣٢ ص
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
عوامل الخطر
⚙️ الأوامر الخارجية (64)
الأنماط المكتشفة
١١ يناير ٢٠٢٦، ٠٥:٥٨ ص
This skill is a documentation review tool that analyzes markdown files and generates consistency reports. All static analysis findings were false positives - the 'external commands' were markdown code blocks showing example syntax, not actual code execution. The skill performs read-only operations on documentation files.
عوامل الخطر
⚙️ الأوامر الخارجية (32)
١١ يناير ٢٠٢٦، ٠٥:٥٨ ص
This skill is a documentation review tool that analyzes markdown files and generates consistency reports. All static analysis findings were false positives - the 'external commands' were markdown code blocks showing example syntax, not actual code execution. The skill performs read-only operations on documentation files.