Audit History
outreach-manager - 6 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v6 Latest | Jul 27, 2026, 11:33 AM | No confirmed findings | 0 | No capability change |
| v5 | Jul 13, 2026, 02:18 PM | 2 confirmed | 0 | No capability change |
| v4 | Jul 13, 2026, 02:18 PM | 2 confirmed | 0 | No capability change |
| v3 | Jul 12, 2026, 01:18 PM | No confirmed findings | 0 | No capability change |
| v2 | Jul 6, 2026, 06:14 PM | No confirmed findings | 0 | No capability change |
| v1 | Jul 4, 2026, 04:22 PM | No confirmed findings | 0 | Baseline |
Jul 27, 2026, 11:33 AM
All 39 static findings are false positives. The apparent command execution is Markdown formatting or connector placeholders, and the apparent traversal is documentation links or named memory locations. The skill contains no executable code, network requests, prompt-injection language, or enabled live integration.
Risk Factors
π Filesystem access (20)
βοΈ External commands (15)
π Network access (2)
Jul 13, 2026, 02:18 PM
All 39 static findings are false positives caused by Markdown fences, inline code, relative documentation links, or GitHub metadata. Semantic review found risks from invented personalization details and potentially unsolicited multi-channel follow-ups. No prompt injection or executable command behavior was found.
Confirmed security concerns (2)
Risk Factors
π Filesystem access (20)
βοΈ External commands (15)
π Network access (2)
Jul 13, 2026, 02:18 PM
All 39 static findings are false positives caused by Markdown fences, inline code, relative documentation links, or GitHub metadata. Semantic review found risks from invented personalization details and potentially unsolicited multi-channel follow-ups. No prompt injection or executable command behavior was found.
Confirmed security concerns (2)
Risk Factors
π Filesystem access (20)
βοΈ External commands (15)
π Network access (2)
Jul 12, 2026, 01:18 PM
All 39 static findings are false positives caused by Markdown code fences, inline code, relative documentation links, and repository metadata URLs. No executable commands, automatic network requests, path traversal behavior, prompt injection, or malicious intent were found.
Risk Factors
π Filesystem access (20)
βοΈ External commands (15)
π Network access (2)
Jul 6, 2026, 06:14 PM
The static findings are false positives from Markdown fences, relative documentation links, homepage metadata, and outreach copy guidance. I found no prompt injection, executable command behavior, credential access, or unauthorized network activity in the reviewed files.
Risk Factors
π Filesystem access (20)
βοΈ External commands (15)
π Network access (2)
Jul 4, 2026, 04:22 PM
I found no confirmed security issues after reviewing the flagged files in context. The static alerts are Markdown code fences, relative documentation links, connector placeholders, and metadata URLs rather than executable behavior. No evidence of prompt injection, shell execution, unsafe network activity, or data exfiltration was found.