История аудитов
portfolio-context - 5 аудиты
Сравнение версий
Изменения возможностей и находок между проверенными версиями, сначала новые.
| Версия | Дата | Результат | Пункты проверки | Изменение к предыдущей |
|---|---|---|---|---|
| v5 Последняя | 20 июл. 2026 г., 17:17 | Подтверждённых находок нет | 0 | Внешние команды |
| v4 | 27 июн. 2026 г., 16:45 | Подтверждённых находок нет | 0 | Внешние команды |
| v3 | 16 янв. 2026 г., 12:14 | Подтверждённых находок нет | 0 | Возможности не изменились |
| v2 | 16 янв. 2026 г., 12:14 | Подтверждённых находок нет | 0 | Внешние команды |
| v1 | 10 янв. 2026 г., 09:12 | Подтверждённых находок нет | 0 | Базовая |
20 июл. 2026 г., 17:17
All six static findings are false positives caused by Markdown inline and fenced code formatting. The skill contains project documentation only and no executable commands, network instructions, credential handling, or prompt-injection content.
Факторы риска
⚙️ Внешние команды (6)
27 июн. 2026 г., 16:45
Static analysis reported external command and weak cryptography patterns, but review found only Markdown inline code, a directory tree, and descriptive portfolio terminology. No executable code, shell invocation, cryptographic implementation, network access, filesystem access, secret handling, or prompt injection attempt was found in SKILL.md.
Статические ложные срабатывания проигнорированы (3)
Эти статические совпадения были отклонены семантической проверкой или совпадали только со схемными токенами, поэтому они показываются для прозрачности, но не влияют на оценку качества.
16 янв. 2026 г., 12:14
This skill is a pure documentation/context file containing no executable code. All 22 static findings are FALSE POSITIVES caused by the analyzer misinterpreting JSON metadata fields, markdown code fences, and documentation text as security threats. No network calls, file access, or command execution capabilities exist.
Факторы риска
⚙️ Внешние команды (6)
16 янв. 2026 г., 12:14
This skill is a pure documentation/context file containing no executable code. All 22 static findings are FALSE POSITIVES caused by the analyzer misinterpreting JSON metadata fields, markdown code fences, and documentation text as security threats. No network calls, file access, or command execution capabilities exist.
Факторы риска
⚙️ Внешние команды (6)
10 янв. 2026 г., 09:12
Pure markdown context file with no executable code. Contains project documentation only. No file access, network calls, or command execution capabilities. Safe for publication.