スキル create-plan 監査履歴
📦

監査履歴

create-plan - 9 監査

バージョン比較

監査済みバージョン間の機能と検出結果の変化(新しい順)。

バージョン日付結果レビュー項目前バージョンとの変化
v9 最新2026年7月23日 12:32 確認された検出結果なし0機能の変化なし
v8 2026年7月8日 03:24 確認された検出結果なし0機能の変化なし
v7 2026年7月6日 09:36 確認された検出結果なし0外部コマンド
v6 2026年6月29日 12:59 確認された検出結果なし0 外部コマンド
v5 2026年1月17日 00:06 確認された検出結果なし0機能の変化なし
v4 2026年1月17日 00:06 確認された検出結果なし0外部コマンド
v3 2026年1月7日 00:57 確認された検出結果なし0機能の変化なし
v2 2026年1月7日 00:57 確認された検出結果なし0機能の変化なし
v1 2026年1月7日 00:57 確認された検出結果なし0基準

2026年7月23日 12:32

Both static findings are false positives caused by Markdown syntax in SKILL.md. The skill is prompt-only, read-only, and contains no command execution or semantic security concerns.

1
スキャンされたファイル
75
解析済み行数
1
レビュー項目
0
誤検知を無視

リスク要因

⚙️ 外部コマンド (2)
監査者: codex

2026年7月8日 03:24

The two static findings are false positives caused by Markdown backticks in SKILL.md, not executable code. The skill is prompt-only, read-only, and focused on generating implementation plans. No semantic evidence of prompt injection, data exfiltration, or abusive behavior was found.

1
スキャンされたファイル
75
解析済み行数
1
レビュー項目
0
誤検知を無視

リスク要因

⚙️ 外部コマンド (2)
監査者: codex

2026年7月6日 09:36

The two static findings are false positives caused by Markdown backticks in SKILL.md. I found no evidence of executable code, command execution, data exfiltration, prompt injection, or other semantic security issues.

1
スキャンされたファイル
75
解析済み行数
1
レビュー項目
0
誤検知を無視

リスク要因

⚙️ 外部コマンド (2)
監査者: codex

2026年6月29日 12:59

Static external command findings are false positives: SKILL.md line 19 uses Markdown backticks for file and directory names, and lines 42-63 show a Markdown plan template. Static weak cryptography findings are also false positives from ordinary words such as description, short-description, and describing on lines 3, 5, and 29. No prompt injection, code execution, network access, credential access, or data exfiltration behavior was found.

1
スキャンされたファイル
75
解析済み行数
0
レビュー項目
0
誤検知を無視
この完了済み監査には、確認済みのセキュリティ検出事項は記録されていません。
監査者: codex

2026年1月17日 00:06

This skill contains only markdown documentation. No executable code, scripts, network calls, or file modifications exist. Static findings are false positives triggered by metadata fields (GitHub URLs, 'command' substring in content_hash, 'md' substrings in documentation). Pure read-only prompt template.

2
スキャンされたファイル
256
解析済み行数
1
レビュー項目
0
誤検知を無視
監査者: claude

2026年1月17日 00:06

This skill contains only markdown documentation. No executable code, scripts, network calls, or file modifications exist. Static findings are false positives triggered by metadata fields (GitHub URLs, 'command' substring in content_hash, 'md' substrings in documentation). Pure read-only prompt template.

2
スキャンされたファイル
256
解析済み行数
1
レビュー項目
0
誤検知を無視
監査者: claude

2026年1月7日 00:57

This is a pure prompt-based skill containing only markdown documentation. No executable code, scripts, network calls, or file system modifications. Operates strictly in read-only mode for context scanning.

1
スキャンされたファイル
75
解析済み行数
0
レビュー項目
0
誤検知を無視
この完了済み監査には、確認済みのセキュリティ検出事項は記録されていません。
監査者: claude

2026年1月7日 00:57

This is a pure prompt-based skill containing only markdown documentation. No executable code, scripts, network calls, or file system modifications. Operates strictly in read-only mode for context scanning.

1
スキャンされたファイル
75
解析済み行数
0
レビュー項目
0
誤検知を無視
この完了済み監査には、確認済みのセキュリティ検出事項は記録されていません。
監査者: claude

2026年1月7日 00:57

This is a pure prompt-based skill containing only markdown documentation. No executable code, scripts, network calls, or file system modifications. Operates strictly in read-only mode for context scanning.

1
スキャンされたファイル
75
解析済み行数
0
レビュー項目
0
誤検知を無視
この完了済み監査には、確認済みのセキュリティ検出事項は記録されていません。
監査者: claude