Audit History
extend-signal-schema - 9 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v9 Latest | Jul 20, 2026, 11:22 AM | No confirmed findings | 0 | No capability change |
| v8 | Jul 7, 2026, 07:13 PM | No confirmed findings | 0 | No capability change |
| v7 | Jul 6, 2026, 01:47 AM | No confirmed findings | 0 | External commands |
| v6 | Jun 28, 2026, 06:01 AM | No confirmed findings | 0 | External commands |
| v5 | Jan 16, 2026, 03:04 PM | No confirmed findings | 0 | No capability change |
| v4 | Jan 16, 2026, 03:04 PM | No confirmed findings | 0 | External commands |
| v3 | Jan 10, 2026, 09:42 AM | No confirmed findings | 0 | No capability change |
| v2 | Jan 10, 2026, 09:42 AM | No confirmed findings | 0 | No capability change |
| v1 | Jan 10, 2026, 09:42 AM | No confirmed findings | 0 | Baseline |
Jul 20, 2026, 11:22 AM
All 63 static findings are false positives caused by Markdown backticks and ordinary documentation language. The skill provides schema-change guidance, limits scope, requires human clarification for unclear requests, and does not contain executable commands, network access, data collection, or prompt-injection text.
Risk Factors
⚙️ External commands (50)
Jul 7, 2026, 07:13 PM
Reviewed 64 static findings in SKILL.md. The external-command alerts are Markdown formatting or bounded npm validation instructions, and the reconnaissance alerts are governance references, test descriptions, or example status text. No prompt injection, data exfiltration intent, hidden override language, or malicious network behavior was found.
Risk Factors
⚙️ External commands (55)
Jul 6, 2026, 01:47 AM
No prompt injection, data exfiltration, or malicious execution intent was found in SKILL.md. The static findings are false positives caused by Markdown inline code, file paths, examples, governance references, and conventional build or test guidance. The skill is documentation for controlled AFI schema edits.
Risk Factors
⚙️ External commands (55)
Jun 28, 2026, 06:01 AM
Static analysis reported many high-risk patterns, but review found they are false positives caused by Markdown inline code, documentation examples, and ordinary words such as description. The skill is a procedural guide for schema changes and contains no executable script, no prompt injection attempt, no credential handling, and no data exfiltration behavior.
Static false positives ignored (3)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Jan 16, 2026, 03:04 PM
All 109 static findings are false positives from pattern matching against documentation and metadata files. The skill contains no executable code, only markdown documentation (SKILL.md) and JSON metadata (). All detected patterns are backtick-wrapped code examples in documentation or JSON string values describing the skill's functionality.
Risk Factors
⚙️ External commands (75)
Jan 16, 2026, 03:04 PM
All 109 static findings are false positives from pattern matching against documentation and metadata files. The skill contains no executable code, only markdown documentation (SKILL.md) and JSON metadata (). All detected patterns are backtick-wrapped code examples in documentation or JSON string values describing the skill's functionality.
Risk Factors
⚙️ External commands (75)
Jan 10, 2026, 09:42 AM
Pure prompt-based skill consisting only of documentation. No executable code, scripts, network calls, filesystem access, or command execution. The skill provides guidelines for schema extension with explicit safety boundaries and hard prohibitions against dangerous operations.
Jan 10, 2026, 09:42 AM
Pure prompt-based skill consisting only of documentation. No executable code, scripts, network calls, filesystem access, or command execution. The skill provides guidelines for schema extension with explicit safety boundaries and hard prohibitions against dangerous operations.
Jan 10, 2026, 09:42 AM
Pure prompt-based skill consisting only of documentation. No executable code, scripts, network calls, filesystem access, or command execution. The skill provides guidelines for schema extension with explicit safety boundaries and hard prohibitions against dangerous operations.