Historial de auditorías
run-nx-generator - 7 auditorías
Comparación de versiones
Cambios de capacidades y hallazgos entre versiones auditadas, primero las más recientes.
| Versión | Fecha | Resultado | Elementos de revisión | Cambio vs anterior |
|---|---|---|---|---|
| v7 Más reciente | 5 jul 2026, 20:01 | Sin hallazgos confirmados | 0 | Sin cambios de capacidad |
| v6 | 5 jul 2026, 20:01 | Sin hallazgos confirmados | 0 | Sin cambios de capacidad |
| v5 | 30 jun 2026, 10:42 | Sin hallazgos confirmados | 1 | Sin cambios de capacidad |
| v4 | 17 ene 2026, 07:29 | Sin hallazgos confirmados | 0 | Sin cambios de capacidad |
| v3 | 17 ene 2026, 07:29 | Sin hallazgos confirmados | 0 | Comandos externos |
| v2 | 6 ene 2026, 01:21 | Sin hallazgos confirmados | 0 | Sin cambios de capacidad |
| v1 | 6 ene 2026, 01:21 | Sin hallazgos confirmados | 0 | Base |
5 jul 2026, 20:01
The static findings are Markdown backtick and code block detections around documented Nx commands, not Ruby shell execution. The skill does intentionally guide shell-based Nx workflows, so users should review generated commands and workspace changes before execution. No prompt injection, data exfiltration, or hidden malicious intent was found in SKILL.md.
Factores de riesgo
5 jul 2026, 20:01
The static findings are Markdown backtick and code block detections around documented Nx commands, not Ruby shell execution. The skill does intentionally guide shell-based Nx workflows, so users should review generated commands and workspace changes before execution. No prompt injection, data exfiltration, or hidden malicious intent was found in SKILL.md.
Factores de riesgo
30 jun 2026, 10:42
Static analysis flagged many Markdown backticks and generator wording. The weak cryptography findings are false positives, but the skill intentionally guides shell commands that can modify a workspace.
Elementos de revisión de capacidades (1)
Estas son capacidades locales reales que pueden esperarse para esta habilidad, por lo que requieren revisión, pero no se cuentan como comportamiento malicioso confirmado.
Falsos positivos estáticos ignorados (2)
Estas coincidencias estáticas fueron descartadas por la revisión semántica o coincidieron con tokens solo de esquema, por lo que se muestran por transparencia, pero no afectan la puntuación de calidad.
Factores de riesgo
Patrones detectados
17 ene 2026, 07:29
This is a documentation-only skill providing guidance on running Nx generators. All 29 static findings are false positives: MD5 hashes are content identifiers in metadata, backticks are markdown code formatting, URLs are source references, and the skill contains no executable code, network requests, or external command execution.
Factores de riesgo
17 ene 2026, 07:29
This is a documentation-only skill providing guidance on running Nx generators. All 29 static findings are false positives: MD5 hashes are content identifiers in metadata, backticks are markdown code formatting, URLs are source references, and the skill contains no executable code, network requests, or external command execution.
Factores de riesgo
6 ene 2026, 01:21
This is a documentation-only skill that provides guidance on running Nx generators. The skill file contains no executable code, makes no network requests, does not access the filesystem beyond its own content, and does not execute external commands. The referenced MCP tools are legitimate Nx tooling for generator discovery and execution.
6 ene 2026, 01:21
This is a documentation-only skill that provides guidance on running Nx generators. The skill file contains no executable code, makes no network requests, does not access the filesystem beyond its own content, and does not execute external commands. The referenced MCP tools are legitimate Nx tooling for generator discovery and execution.