Audit History
newsletter-monetization-planner - 6 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v6 Latest | Jul 27, 2026, 11:30 AM | No confirmed findings | 0 | No capability change |
| v5 | Jul 13, 2026, 02:10 PM | 1 confirmed | 0 | No capability change |
| v4 | Jul 13, 2026, 02:10 PM | 1 confirmed | 0 | No capability change |
| v3 | Jul 12, 2026, 01:03 PM | No confirmed findings | 0 | No capability change |
| v2 | Jul 6, 2026, 05:59 PM | No confirmed findings | 0 | No capability change |
| v1 | Jul 4, 2026, 04:18 PM | No confirmed findings | 0 | Baseline |
Jul 27, 2026, 11:30 AM
All 50 static alerts are false positives caused by Markdown formatting, documentation links, and ordinary newsletter-planning text. The skill contains no executable shell commands, network operations, path construction, system reconnaissance, or prompt-injection language. It requests user-provided business metrics and explicitly treats pasted data as untrusted.
Risk Factors
βοΈ External commands (16)
π Network access (2)
π Filesystem access (26)
Jul 13, 2026, 02:10 PM
All 50 static findings are false positives caused by Markdown code fences, inline code, URLs, arrows, and relative documentation links. No network request, shell execution, reconnaissance, or executable path traversal appears in SKILL.md. A separate medium-risk issue remains because the user-derived save topic is not explicitly sanitized before filename construction.
Confirmed security concerns (1)
Risk Factors
βοΈ External commands (16)
π Network access (2)
π Filesystem access (26)
Jul 13, 2026, 02:10 PM
All 50 static findings are false positives caused by Markdown code fences, inline code, URLs, arrows, and relative documentation links. No network request, shell execution, reconnaissance, or executable path traversal appears in SKILL.md. A separate medium-risk issue remains because the user-derived save topic is not explicitly sanitized before filename construction.
Confirmed security concerns (1)
Risk Factors
βοΈ External commands (16)
π Network access (2)
π Filesystem access (26)
Jul 12, 2026, 01:03 PM
All 50 static findings are false positives caused by Markdown fences, inline code, documentation links, metadata URLs, and ordinary business-planning language. The skill contains no executable code, automatic network request, system reconnaissance, or unsafe path construction, and its optional local save requires user confirmation.
Risk Factors
βοΈ External commands (16)
π Network access (2)
π Filesystem access (26)
Jul 6, 2026, 05:59 PM
The static alerts are false positives caused by Markdown code fences, inline-code labels, repository reference links, and fixed memory paths. No prompt injection, exfiltration intent, arbitrary command execution, or unsafe dynamic file access was found in SKILL.md.
Risk Factors
βοΈ External commands (16)
π Network access (2)
π Filesystem access (26)
Jul 4, 2026, 04:18 PM
All static findings are false positives caused by Markdown code fences, inline code formatting, homepage metadata, relative documentation links, and documented memory save paths. I found no shell execution, runtime network access, path traversal, prompt injection, or malicious intent in SKILL.md.