История аудитов
human-docs - 8 аудиты
Сравнение версий
Изменения возможностей и находок между проверенными версиями, сначала новые.
| Версия | Дата | Результат | Пункты проверки | Изменение к предыдущей |
|---|---|---|---|---|
| v8 Последняя | 6 июл. 2026 г., 05:38 | Подтверждённых находок нет | 0 | Возможности не изменились |
| v7 | 6 июл. 2026 г., 05:38 | Подтверждённых находок нет | 0 | Внешние команды Доступ к сетиДоступ к файловой системе |
| v6 | 28 июн. 2026 г., 17:43 | Подтверждённых находок нет | 2 | Доступ к файловой системе Внешние команды |
| v5 | 16 янв. 2026 г., 19:42 | Подтверждённых находок нет | 0 | Возможности не изменились |
| v4 | 16 янв. 2026 г., 19:42 | Подтверждённых находок нет | 0 | Внешние командыДоступ к сети |
| v3 | 10 янв. 2026 г., 11:31 | Подтверждённых находок нет | 0 | Возможности не изменились |
| v2 | 10 янв. 2026 г., 11:31 | Подтверждённых находок нет | 0 | Возможности не изменились |
| v1 | 10 янв. 2026 г., 11:31 | Подтверждённых находок нет | 0 | Базовая |
6 июл. 2026 г., 05:38
All static findings appear to be false positives caused by Markdown code fences, inline code formatting, Mermaid examples, and documentation paths. No executable command logic, host reconnaissance, credential handling, network behavior, or prompt injection text was found in the cited files. No semantic security findings were identified.
Факторы риска
⚙️ Внешние команды (54)
6 июл. 2026 г., 05:38
All static findings appear to be false positives caused by Markdown code fences, inline code formatting, Mermaid examples, and documentation paths. No executable command logic, host reconnaissance, credential handling, network behavior, or prompt injection text was found in the cited files. No semantic security findings were identified.
Факторы риска
⚙️ Внешние команды (54)
28 июн. 2026 г., 17:43
Static analysis reported many high-risk patterns, but review found they are false positives from Markdown fences, Mermaid diagram syntax, and documentation examples. No malicious intent, credential access, command execution, prompt injection, or data exfiltration was found. The skill does instruct agents to read AI docs and write generated files under docs/, so filesystem behavior should remain clear to users.
Пункты проверки возможностей (2)
Это реальные локальные возможности, которые могут ожидаться для этого навыка, поэтому они требуют проверки, но не считаются подтверждённым вредоносным поведением.
Статические ложные срабатывания проигнорированы (2)
Эти статические совпадения были отклонены семантической проверкой или совпадали только со схемными токенами, поэтому они показываются для прозрачности, но не влияют на оценку качества.
Факторы риска
🌐 Доступ к сети (2)
📁 Доступ к файловой системе (5)
16 янв. 2026 г., 19:42
Pure documentation transformation skill with no executable code. All 246 static findings are false positives: backticks are markdown inline code formatting, Mermaid diagram syntax is not shell commands, placeholder text like 'command-here' is not real shell execution, and 'weak cryptographic algorithm' patterns are scanner artifacts from words like 'Mermaid' and date formats.
Факторы риска
⚙️ Внешние команды (154)
16 янв. 2026 г., 19:42
Pure documentation transformation skill with no executable code. All 246 static findings are false positives: backticks are markdown inline code formatting, Mermaid diagram syntax is not shell commands, placeholder text like 'command-here' is not real shell execution, and 'weak cryptographic algorithm' patterns are scanner artifacts from words like 'Mermaid' and date formats.
Факторы риска
⚙️ Внешние команды (154)
10 янв. 2026 г., 11:31
Pure prompt-based documentation transformation skill with no executable code, no network access, and no file system operations beyond reading and writing markdown documentation files.
10 янв. 2026 г., 11:31
Pure prompt-based documentation transformation skill with no executable code, no network access, and no file system operations beyond reading and writing markdown documentation files.
10 янв. 2026 г., 11:31
Pure prompt-based documentation transformation skill with no executable code, no network access, and no file system operations beyond reading and writing markdown documentation files.