Audit History
site-structure-optimizer - 4 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v4 Latest | Jul 12, 2026, 02:06 PM | No confirmed findings | 2 | No capability change |
| v3 | Jul 12, 2026, 02:06 PM | No confirmed findings | 2 | No capability change |
| v2 | Jul 7, 2026, 05:29 PM | 1 confirmed | 2 | No capability change |
| v1 | Jul 4, 2026, 04:24 PM | No confirmed findings | 0 | Baseline |
Jul 12, 2026, 02:06 PM
Two findings are confirmed because the skill instructs agents to run Python crawler and link-analysis helpers. All other findings are Markdown formatting, relative documentation links, diagrams, or repository metadata. No prompt injection or malicious intent was found.
Capability review items (2)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
π Filesystem access (13)
βοΈ External commands (17)
π Network access (2)
Jul 12, 2026, 02:06 PM
Two findings are confirmed because the skill instructs agents to run Python crawler and link-analysis helpers. All other findings are Markdown formatting, relative documentation links, diagrams, or repository metadata. No prompt injection or malicious intent was found.
Capability review items (2)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
π Filesystem access (13)
βοΈ External commands (17)
π Network access (2)
Jul 7, 2026, 05:29 PM
Most static findings are false positives caused by markdown links, tables, Mermaid diagrams, and inline code formatting. The real concern is the crawler helper that accepts a user-provided URL without documented safety controls. No prompt-injection language was found.
Confirmed security concerns (1)
Capability review items (2)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
π Filesystem access (13)
βοΈ External commands (17)
π Network access (2)
Jul 4, 2026, 04:24 PM
All 63 static findings were adjudicated as false positives in Markdown documentation. The reviewed files contain SEO structure guidance, relative repository links, Mermaid examples, and optional fixed helper command examples; no prompt injection, exfiltration intent, or unsafe runtime behavior was found.