Навыки skill-creator История аудитов
📦

История аудитов

skill-creator - 6 аудиты

Сравнение версий

Изменения возможностей и находок между проверенными версиями, сначала новые.

ВерсияДатаРезультатПункты проверкиИзменение к предыдущей
v6 Последняя4 июл. 2026 г., 17:39 Подтверждённых находок нет0Возможности не изменились
v5 4 июл. 2026 г., 17:39 Подтверждённых находок нет0Внешние команды Содержит скрипты
v4 27 июн. 2026 г., 17:20 2 подтверждено0Возможности не изменились
v3 16 янв. 2026 г., 13:46 Подтверждённых находок нет0Возможности не изменились
v2 16 янв. 2026 г., 13:46 Подтверждённых находок нет0Содержит скриптыДоступ к файловой системе
v1 10 янв. 2026 г., 09:41 Подтверждённых находок нет0Базовая
Версия аудита 6 Последняя

4 июл. 2026 г., 17:39

All 50 static findings were adjudicated as false positives after reviewing the cited files. The alerts come from markdown backticks, archive packaging used for .skill creation, dictionary key validation, and normal validator exits. No prompt injection, credential access, network exfiltration, or malicious intent was found.

7
Просканировано файлов
1,180
Проанализировано строк
2
Пункты проверки
0
Ложные срабатывания проигнорированы
Аудитор:: codex

4 июл. 2026 г., 17:39

All 50 static findings were adjudicated as false positives after reviewing the cited files. The alerts come from markdown backticks, archive packaging used for .skill creation, dictionary key validation, and normal validator exits. No prompt injection, credential access, network exfiltration, or malicious intent was found.

7
Просканировано файлов
1,180
Проанализировано строк
2
Пункты проверки
0
Ложные срабатывания проигнорированы
Аудитор:: codex

27 июн. 2026 г., 17:20

Static analysis reported many high and critical patterns, but review found those are mainly false positives from Markdown fences, Apache license URLs, and template text. No evidence found of prompt injection, network exfiltration, credential files, weak cryptography, system reconnaissance, or command execution. The remaining publishable risk is filesystem behavior: scripts can create files and recursively package folder contents.

7
Просканировано файлов
1,180
Проанализировано строк
4
Пункты проверки
2
Ложные срабатывания проигнорированы

Подтверждённые проблемы безопасности (2)

Средний
Unvalidated Skill Name Used in Filesystem Path
The initializer combines a user-provided path and skill name to create directories and files, but it does not validate the skill name before using it in the path. A careless or untrusted invocation could create files outside the intended naming policy.
The code directly derives the output directory from user arguments and writes files there. The risk depends on who supplies arguments, so this is a moderate filesystem concern rather than confirmed malicious behavior.
Средний
Recursive Packaging Can Include Unintended Files
The packaging script walks every file under the selected skill directory and writes it into the .skill archive. If secrets, private notes, or unrelated files are present in that folder, they can be distributed accidentally.
The recursive archive behavior is explicit in the code. There is no evidence of exfiltration, but accidental inclusion is a realistic publishing risk.
Статические ложные срабатывания проигнорированы (2)

Эти статические совпадения были отклонены семантической проверкой или совпадали только со схемными токенами, поэтому они показываются для прозрачности, но не влияют на оценку качества.

Низкий
Static Command Execution Findings Are Markdown False Positives
The reported Ruby or shell backtick findings occur in Markdown fences, inline file names, examples, and template text. No evidence found of subprocess calls, shell execution, eval, or similar executable command dispatch.
The cited locations are documentation examples or Python string templates, not executed shell syntax. A targeted search found no command execution APIs in the scanned files.
Низкий
Network and Weak Cryptography Findings Are Static False Positives
The only hardcoded URLs are Apache License references, and no evidence found of network requests or cryptographic operations. Weak cryptography and heuristic combination alerts appear caused by ordinary documentation text and filenames.
The cited URLs are license text and the cited code validates YAML keys. No network client, credential access, certificate material, or crypto primitive was found in the reviewed files.

Обнаруженные паттерны

Unvalidated Skill Name Used in Filesystem PathRecursive Packaging Can Include Unintended Files
Аудитор:: codex

16 янв. 2026 г., 13:46

This is a documentation and utility skill for creating other skills. It contains Python scripts for skill initialization, validation, and packaging. All scripts operate locally on the filesystem, create directories and files at user-specified paths, and make no network calls or external command executions. The extensive static findings are false positives caused by markdown code block markers being misidentified as shell backticks, and text patterns in documentation being misidentified as cryptographic terms.

8
Просканировано файлов
1,400
Проанализировано строк
2
Пункты проверки
0
Ложные срабатывания проигнорированы

Факторы риска

Аудитор:: claude

16 янв. 2026 г., 13:46

This is a documentation and utility skill for creating other skills. It contains Python scripts for skill initialization, validation, and packaging. All scripts operate locally on the filesystem, create directories and files at user-specified paths, and make no network calls or external command executions. The extensive static findings are false positives caused by markdown code block markers being misidentified as shell backticks, and text patterns in documentation being misidentified as cryptographic terms.

8
Просканировано файлов
1,400
Проанализировано строк
2
Пункты проверки
0
Ложные срабатывания проигнорированы

Факторы риска

Аудитор:: claude

10 янв. 2026 г., 09:41

This is a documentation and utility skill for creating other skills. It contains Python scripts for skill initialization, validation, and packaging. All scripts operate locally on filesystem, create directories and files at user-specified paths, and make no network calls or external command executions. No sensitive data access detected.

7
Просканировано файлов
1,180
Проанализировано строк
0
Пункты проверки
0
Ложные срабатывания проигнорированы
В этом завершенном аудите не зафиксировано подтвержденных проблем безопасности.
Аудитор:: claude