Historial de auditorías
competitor-analysis - 9 auditorías
Comparación de versiones
Cambios de capacidades y hallazgos entre versiones auditadas, primero las más recientes.
| Versión | Fecha | Resultado | Elementos de revisión | Cambio vs anterior |
|---|---|---|---|---|
| v9 Más reciente | 5 jul 2026, 07:01 | Sin hallazgos confirmados | 0 | Sin cambios de capacidad |
| v8 | 5 jul 2026, 07:01 | Sin hallazgos confirmados | 0 | Comandos externos |
| v7 | 28 jun 2026, 23:24 | Sin hallazgos confirmados | 2 | Sin cambios de capacidad |
| v6 | 21 ene 2026, 15:07 | Sin hallazgos confirmados | 0 | Comandos externos |
| v5 | 16 ene 2026, 21:43 | Sin hallazgos confirmados | 0 | Sin cambios de capacidad |
| v4 | 16 ene 2026, 21:43 | Sin hallazgos confirmados | 0 | Acceso a redComandos externos |
| v3 | 10 ene 2026, 12:24 | Sin hallazgos confirmados | 0 | Sin cambios de capacidad |
| v2 | 10 ene 2026, 12:24 | Sin hallazgos confirmados | 0 | Sin cambios de capacidad |
| v1 | 10 ene 2026, 12:24 | Sin hallazgos confirmados | 0 | Base |
5 jul 2026, 07:01
All four static findings are false positives. The external command alerts come from Markdown inline code and a fenced JSON example, not executable shell usage. The URL alert is a placeholder output value, and no prompt injection or malicious intent was found in SKILL.md.
Factores de riesgo
⚙️ Comandos externos (3)
🌐 Acceso a red (1)
5 jul 2026, 07:01
All four static findings are false positives. The external command alerts come from Markdown inline code and a fenced JSON example, not executable shell usage. The URL alert is a placeholder output value, and no prompt injection or malicious intent was found in SKILL.md.
Factores de riesgo
⚙️ Comandos externos (3)
🌐 Acceso a red (1)
28 jun 2026, 23:24
Static command-execution and weak-cryptography findings are false positives in documentation text and a fenced output example. The skill is publishable with a medium warning because it explicitly enables browser navigation and external web search for competitor research.
Elementos de revisión de capacidades (2)
Estas son capacidades locales reales que pueden esperarse para esta habilidad, por lo que requieren revisión, pero no se cuentan como comportamiento malicioso confirmado.
Falsos positivos estáticos ignorados (2)
Estas coincidencias estáticas fueron descartadas por la revisión semántica o coincidieron con tokens solo de esquema, por lo que se muestran por transparencia, pero no afectan la puntuación de calidad.
Factores de riesgo
🌐 Acceso a red (2)
21 ene 2026, 15:07
All 13 static findings evaluated as false positives. The skill is a legitimate business research tool that uses standard web scraping tools to analyze competitor websites. Detected patterns (URLs in metadata, backticks in markdown, text patterns flagged as cryptographic) are benign documentation and configuration elements with no security implications.
Factores de riesgo
🌐 Acceso a red (1)
16 ene 2026, 21:43
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Factores de riesgo
🌐 Acceso a red (1)
⚙️ Comandos externos (3)
Patrones detectados
16 ene 2026, 21:43
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Factores de riesgo
🌐 Acceso a red (1)
⚙️ Comandos externos (3)
Patrones detectados
10 ene 2026, 12:24
Markdown-only skill defining a research framework. No executable code, network calls, or file system access beyond standard documentation. Pure prompt-based skill for competitor website analysis.
10 ene 2026, 12:24
Markdown-only skill defining a research framework. No executable code, network calls, or file system access beyond standard documentation. Pure prompt-based skill for competitor website analysis.
10 ene 2026, 12:24
Markdown-only skill defining a research framework. No executable code, network calls, or file system access beyond standard documentation. Pure prompt-based skill for competitor website analysis.