Historial de auditorías
generate-output - 6 auditorías
Versión de auditoría 6
Más reciente SeguroJun 28, 2026, 04:19 AM
Static analysis reported external command, weak cryptography, and system reconnaissance patterns in SKILL.md. Manual review found these are false positives caused by Markdown code fences, template placeholders, and normal instructional text; no executable shell commands, cryptographic operations, reconnaissance behavior, data exfiltration, or prompt injection attempts were found.
Confirmed security concerns (3)
Versión de auditoría 5
SeguroJan 16, 2026, 02:49 PM
This is a pure prompt-based documentation skill with no executable code. All static findings are false positives triggered by documentation text and JSON metadata. The skill contains only markdown documentation describing a workflow for generating deliverables based on user standards.
Factores de riesgo
⚙️ Comandos externos (4)
Versión de auditoría 4
SeguroJan 16, 2026, 02:49 PM
This is a pure prompt-based documentation skill with no executable code. All static findings are false positives triggered by documentation text and JSON metadata. The skill contains only markdown documentation describing a workflow for generating deliverables based on user standards.
Factores de riesgo
⚙️ Comandos externos (4)
Versión de auditoría 3
SeguroJan 10, 2026, 10:02 AM
Pure prompt-based skill with no code execution capabilities. Contains only documentation describing a workflow for generating deliverables. No filesystem access, network calls, environment variables, or external commands.
Versión de auditoría 2
SeguroJan 10, 2026, 10:02 AM
Pure prompt-based skill with no code execution capabilities. Contains only documentation describing a workflow for generating deliverables. No filesystem access, network calls, environment variables, or external commands.
Versión de auditoría 1
SeguroJan 10, 2026, 10:02 AM
Pure prompt-based skill with no code execution capabilities. Contains only documentation describing a workflow for generating deliverables. No filesystem access, network calls, environment variables, or external commands.