監査履歴
vue-options-api-best-practices - 4 監査
バージョン比較
監査済みバージョン間の機能と検出結果の変化(新しい順)。
2026年7月7日 06:56
The static alerts are false positives caused by Markdown code fences, TypeScript template literals, Vue documentation links, and DOM event property names. No prompt injection, secret handling, command execution, or executable network behavior was found in the reviewed skill content.
リスク要因
⚙️ 外部コマンド (8)
🌐 ネットワークアクセス (1)
2026年7月7日 06:56
The static alerts are false positives caused by Markdown code fences, TypeScript template literals, Vue documentation links, and DOM event property names. No prompt injection, secret handling, command execution, or executable network behavior was found in the reviewed skill content.
リスク要因
⚙️ 外部コマンド (8)
🌐 ネットワークアクセス (1)
2026年6月30日 22:55
Static analysis reported 258 issues, but targeted review found they are false positives from Markdown examples and documentation links. The skill is documentation-only and contains no executable scripts, credential access, network exfiltration, or prompt injection attempts. Safe to publish.
静的解析の誤検知を無視 (1)
これらの静的マッチはセマンティックレビューで却下されたか、スキーマのみのトークンに一致したため、透明性のために表示されていますが、品質スコアには影響しません。
2026年2月12日 08:56
Static analysis detected 258 potential security issues, all are false positives from markdown code blocks. The 'Ruby/shell backtick execution' findings are JavaScript code examples in markdown fences. 'Hardcoded URL' findings are Vue.js documentation links. 'Weak cryptographic algorithm' findings trigger on the word 'key' in event.key and YAML frontmatter. No actual security risks exist.
静的解析の誤検知を無視 (1)
これらの静的マッチはセマンティックレビューで却下されたか、スキーマのみのトークンに一致したため、透明性のために表示されていますが、品質スコアには影響しません。