Audit History
FlowGram Material Component Development - 10 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v10 Latest | 19 июл. 2026 г., 02:47 | No confirmed findings | 0 | No capability change |
| v9 | 7 июл. 2026 г., 23:28 | No confirmed findings | 0 | No capability change |
| v8 | 6 июл. 2026 г., 05:20 | No confirmed findings | 0 | No capability change |
| v7 | 28 июн. 2026 г., 17:54 | No confirmed findings | 0 | External commandsNetwork accessFilesystem access |
| v6 | 21 янв. 2026 г., 15:40 | No confirmed findings | 0 | Network accessFilesystem accessExternal commands |
| v5 | 16 янв. 2026 г., 20:57 | No confirmed findings | 0 | No capability change |
| v4 | 16 янв. 2026 г., 20:57 | No confirmed findings | 0 | Network accessFilesystem accessExternal commands |
| v3 | 6 янв. 2026 г., 07:33 | No confirmed findings | 0 | No capability change |
| v2 | 6 янв. 2026 г., 07:33 | No confirmed findings | 0 | No capability change |
| v1 | 6 янв. 2026 г., 07:33 | No confirmed findings | 0 | Baseline |
19 июл. 2026 г., 02:47
All 57 static findings are false positives caused by Markdown code formatting, fenced examples, a localhost Storybook URL, and a compile-time relative import. The documented shell commands use fixed local development arguments and show no dynamic input, exfiltration, prompt injection, or malicious intent. No security remediation is required.
Risk Factors
⚙️ External commands (50)
🌐 Network access (1)
📁 Filesystem access (1)
7 июл. 2026 г., 23:28
The reviewed skill is a Markdown guide for FlowGram component development, not executable code. All static findings are false positives caused by Markdown backticks, fenced examples, a localhost Storybook URL, and a relative import reference. No evidence found for prompt injection, data exfiltration intent, or malicious behavior.
Risk Factors
⚙️ External commands (55)
🌐 Network access (1)
📁 Filesystem access (1)
6 июл. 2026 г., 05:20
All static findings are false positives caused by Markdown formatting, local development examples, or TypeScript import references. No prompt injection, credential access, unauthorized network behavior, or automatic command execution was found in SKILL.md.
Risk Factors
⚙️ External commands (55)
🌐 Network access (1)
📁 Filesystem access (1)
28 июн. 2026 г., 17:54
Static analysis reported many command, network, filesystem, and weak-crypto patterns, but review found them in Markdown documentation and code examples. No malicious intent, credential access, exfiltration, prompt injection, or executable installer script was found in SKILL.md.
Static false positives ignored (4)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚙️ External commands (61)
🌐 Network access (1)
📁 Filesystem access (1)
21 янв. 2026 г., 15:40
This skill is a pure documentation guide for React component development. All static findings are false positives from markdown documentation containing example commands, local URLs, and relative import paths. No executable code or security risks present.
16 янв. 2026 г., 20:57
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
🌐 Network access (1)
📁 Filesystem access (1)
⚙️ External commands (61)
Detected Patterns
16 янв. 2026 г., 20:57
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
🌐 Network access (1)
📁 Filesystem access (1)
⚙️ External commands (61)
Detected Patterns
6 янв. 2026 г., 07:33
Documentation-only skill containing markdown guidance and TypeScript code examples for FlowGram component development. No executable code, network calls, or file system access beyond reading its own file.
6 янв. 2026 г., 07:33
Documentation-only skill containing markdown guidance and TypeScript code examples for FlowGram component development. No executable code, network calls, or file system access beyond reading its own file.
6 янв. 2026 г., 07:33
Documentation-only skill containing markdown guidance and TypeScript code examples for FlowGram component development. No executable code, network calls, or file system access beyond reading its own file.