Audit History
subject-line-lab - 6 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v6 Latest | Jul 27, 2026, 11:45 AM | No confirmed findings | 0 | No capability change |
| v5 | Jul 13, 2026, 02:58 PM | No confirmed findings | 0 | No capability change |
| v4 | Jul 13, 2026, 02:58 PM | No confirmed findings | 0 | No capability change |
| v3 | Jul 12, 2026, 02:10 PM | No confirmed findings | 2 | No capability change |
| v2 | Jul 7, 2026, 05:34 PM | No confirmed findings | 0 | No capability change |
| v1 | Jul 4, 2026, 04:25 PM | No confirmed findings | 0 | Baseline |
Jul 27, 2026, 11:45 AM
All 53 static detections are false positives caused by Markdown code spans and relative documentation links. The skill gives local email-writing guidance, labels heuristics as estimates, treats imported material as untrusted, and requires confirmation before saving memory. No prompt injection, data exfiltration, command execution, or unsafe filesystem behavior was found.
Risk Factors
π Filesystem access (25)
βοΈ External commands (20)
π Network access (2)
Jul 13, 2026, 02:58 PM
All 53 static findings are false positives caused by Markdown links, code formatting, documentation paths, and ordinary prose. No executable shell code, network request, path traversal behavior, reconnaissance, prompt injection, or other semantic security threat was found.
Risk Factors
π Filesystem access (25)
βοΈ External commands (20)
π Network access (2)
Jul 13, 2026, 02:58 PM
All 53 static findings are false positives caused by Markdown links, code formatting, documentation paths, and ordinary prose. No executable shell code, network request, path traversal behavior, reconnaissance, prompt injection, or other semantic security threat was found.
Risk Factors
π Filesystem access (25)
βοΈ External commands (20)
π Network access (2)
Jul 12, 2026, 02:10 PM
Most static alerts are false positives caused by Markdown links, inline formatting, code fences, and homepage metadata. Two risks remain: an unsanitized filename placeholder can permit path traversal, and a local script invocation lacks a defined safe argument boundary.
Capability review items (2)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
π Filesystem access (25)
βοΈ External commands (20)
π Network access (2)
Jul 7, 2026, 05:34 PM
I reviewed 53 static findings across SKILL.md and the checklist file. They are false positives from Markdown backticks, examples, relative documentation links, and fixed memory paths. I found no shell execution, external network use, prompt injection, or unsafe path traversal.
Risk Factors
π Filesystem access (25)
βοΈ External commands (20)
π Network access (2)
Jul 4, 2026, 04:25 PM
Static analysis flagged Markdown links, inline code formatting, homepage metadata, and workflow terms as possible security issues. Manual review found no executable commands, unauthorized network behavior, prompt injection, or malicious filesystem access in SKILL.md or references/spam-trigger-checklist.md.