📦
監査履歴
interview-me - 2 監査
バージョン比較
監査済みバージョン間の機能と検出結果の変化(新しい順)。
監査バージョン 2 最新
2026年9月19日 12:31
All 24 static findings are false positives. The external-command matches are Markdown backticks, fenced examples, or prose, and the blocker matches describe interview guidance rather than system reconnaissance.
1
スキャンされたファイル
226
解析済み行数
1
レビュー項目
0
誤検知を無視
リスク要因
⚙️ 外部コマンド (21)
SKILL.md:14 SKILL.md:36 SKILL.md:44-47 SKILL.md:47-57 SKILL.md:57-60 SKILL.md:60-98 SKILL.md:98-109 SKILL.md:109-138 SKILL.md:138-144 SKILL.md:144-146 SKILL.md:146-149 SKILL.md:149-153 SKILL.md:153-155 SKILL.md:155-176 SKILL.md:176-182 SKILL.md:182 SKILL.md:183 SKILL.md:184-185 SKILL.md:185-186 SKILL.md:186-225 SKILL.md:225
監査者: codex
2026年8月30日 13:28
All 24 static findings are false positives caused by Markdown backticks and ordinary requirements language. No command execution or system reconnaissance capability was found. The interview method can bias user decisions through leading questions.
1
スキャンされたファイル
226
解析済み行数
2
レビュー項目
0
誤検知を無視
確認済みのセキュリティ上の懸念 (1)
中
Leading Interview Guidance Can Bias Decisions
The skill directs agents to use leading questions and attach a hypothesis to each question. This can steer users toward the agent’s assumptions during high-impact decisions.
The instructions explicitly endorse leading questions and discuss user agreeableness. The effect is contextual rather than technical, so the finding is limited to undue influence risk.
リスク要因
⚙️ 外部コマンド (21)
SKILL.md:14 SKILL.md:36 SKILL.md:44-47 SKILL.md:47-57 SKILL.md:57-60 SKILL.md:60-98 SKILL.md:98-109 SKILL.md:109-138 SKILL.md:138-144 SKILL.md:144-146 SKILL.md:146-149 SKILL.md:149-153 SKILL.md:153-155 SKILL.md:155-176 SKILL.md:176-182 SKILL.md:182 SKILL.md:183 SKILL.md:184-185 SKILL.md:185-186 SKILL.md:186-225 SKILL.md:225
監査者: claude