Audit History
agentdb-learning-plugins - 10 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v10 Latest | 2026年7月9日 11:42 | No confirmed findings | 0 | No capability change |
| v9 | 2026年7月9日 11:42 | No confirmed findings | 0 | No capability change |
| v8 | 2026年7月5日 12:19 | No confirmed findings | 9 | No capability change |
| v7 | 2026年7月5日 12:19 | No confirmed findings | 9 | Filesystem access |
| v6 | 2026年6月29日 18:14 | No confirmed findings | 3 | Filesystem access |
| v5 | 2026年1月17日 04:17 | No confirmed findings | 0 | No capability change |
| v4 | 2026年1月17日 04:17 | No confirmed findings | 0 | Network accessExternal commands |
| v3 | 2026年1月10日 13:16 | No confirmed findings | 0 | No capability change |
| v2 | 2026年1月10日 13:16 | No confirmed findings | 0 | No capability change |
| v1 | 2026年1月10日 13:16 | No confirmed findings | 0 | Baseline |
2026年7月9日 11:42
Static analysis flagged Markdown backticks, documentation links, a relative SQLite example path, and one ordinary use-case bullet. Review found no prompt injection, hidden execution, credential access, or data exfiltration intent in SKILL.md.
Risk Factors
⚙️ External commands (50)
🌐 Network access (2)
2026年7月9日 11:42
Static analysis flagged Markdown backticks, documentation links, a relative SQLite example path, and one ordinary use-case bullet. Review found no prompt injection, hidden execution, credential access, or data exfiltration intent in SKILL.md.
Risk Factors
⚙️ External commands (50)
🌐 Network access (2)
2026年7月5日 12:19
Most static findings are Markdown code fences or illustrative TypeScript and JSON examples. The confirmed issue is repeated use of unpinned npx agentdb@latest commands, which can execute remote package code at runtime. No prompt injection, credential exfiltration, or malicious intent was found.
Capability review items (9)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (51)
🌐 Network access (2)
2026年7月5日 12:19
Most static findings are Markdown code fences or illustrative TypeScript and JSON examples. The confirmed issue is repeated use of unpinned npx agentdb@latest commands, which can execute remote package code at runtime. No prompt injection, credential exfiltration, or malicious intent was found.
Capability review items (9)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (51)
🌐 Network access (2)
2026年6月29日 18:14
The high static score is mostly caused by Markdown code fences and documented examples, not hidden executable code. The skill is publishable with a medium warning because it instructs users to run npx agentdb@latest and store learning data in a local database.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚙️ External commands (9)
🌐 Network access (2)
📁 Filesystem access (3)
Detected Patterns
2026年1月17日 04:17
Documentation-only skill containing no executable code. All detected patterns are from instructional code examples showing users how to use the external AgentDB CLI and API. The skill itself performs no network calls, file access, or command execution.
Risk Factors
🌐 Network access (2)
⚙️ External commands (51)
2026年1月17日 04:17
Documentation-only skill containing no executable code. All detected patterns are from instructional code examples showing users how to use the external AgentDB CLI and API. The skill itself performs no network calls, file access, or command execution.
Risk Factors
🌐 Network access (2)
⚙️ External commands (51)
2026年1月10日 13:16
Documentation-only skill containing no executable code. Provides guidance for using AgentDB's external CLI tool and API. No network calls, file system access, or code execution paths defined in the skill file itself.
2026年1月10日 13:16
Documentation-only skill containing no executable code. Provides guidance for using AgentDB's external CLI tool and API. No network calls, file system access, or code execution paths defined in the skill file itself.
2026年1月10日 13:16
Documentation-only skill containing no executable code. Provides guidance for using AgentDB's external CLI tool and API. No network calls, file system access, or code execution paths defined in the skill file itself.