Audit History
epistemic-checkpoint - 9 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v9 Latest | Jul 6, 2026, 03:12 AM | No confirmed findings | 0 | No capability change |
| v8 | Jul 6, 2026, 03:12 AM | No confirmed findings | 0 | External commands Filesystem accessNetwork access |
| v7 | Jun 28, 2026, 08:26 AM | No confirmed findings | 1 | Filesystem accessNetwork access External commands |
| v6 | Jan 21, 2026, 03:33 PM | No confirmed findings | 0 | No capability change |
| v5 | Jan 16, 2026, 04:07 PM | No confirmed findings | 0 | No capability change |
| v4 | Jan 16, 2026, 04:07 PM | No confirmed findings | 0 | External commands |
| v3 | Jan 10, 2026, 09:48 AM | No confirmed findings | 0 | No capability change |
| v2 | Jan 10, 2026, 09:48 AM | No confirmed findings | 0 | No capability change |
| v1 | Jan 10, 2026, 09:48 AM | No confirmed findings | 0 | Baseline |
Jul 6, 2026, 03:12 AM
The static findings are false positives caused by Markdown code fences and examples in SKILL.md, not executable Ruby or shell code. The line flagged for system reconnaissance is a verification reminder, not host or environment enumeration. No prompt injection, data exfiltration, or malicious intent was found.
Risk Factors
Jul 6, 2026, 03:12 AM
The static findings are false positives caused by Markdown code fences and examples in SKILL.md, not executable Ruby or shell code. The line flagged for system reconnaissance is a verification reminder, not host or environment enumeration. No prompt injection, data exfiltration, or malicious intent was found.
Risk Factors
Jun 28, 2026, 08:26 AM
Static command-execution and blocker alerts were false positives. The file contains fenced text examples and instructions to use local assertions and WebSearch, but no executable scripts, shell calls, weak cryptography, or prompt injection were found.
Capability review items (1)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (3)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
📁 Filesystem access (1)
🌐 Network access (1)
Jan 21, 2026, 03:33 PM
All 21 static findings are false positives. The skill is a legitimate metacognitive guard for hallucination prevention. Network access (WebSearch) is controlled and intentional for fact verification. All "external_commands" detections are documentation examples in markdown, not actual shell execution.
Risk Factors
Jan 16, 2026, 04:07 PM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
Detected Patterns
Jan 16, 2026, 04:07 PM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
Detected Patterns
Jan 10, 2026, 09:48 AM
Pure prompt-based skill with no code execution capabilities. Only provides behavioral guidelines for Claude to follow when answering version and date questions. No scripts, network calls, file writes, or external command execution.
Jan 10, 2026, 09:48 AM
Pure prompt-based skill with no code execution capabilities. Only provides behavioral guidelines for Claude to follow when answering version and date questions. No scripts, network calls, file writes, or external command execution.
Jan 10, 2026, 09:48 AM
Pure prompt-based skill with no code execution capabilities. Only provides behavioral guidelines for Claude to follow when answering version and date questions. No scripts, network calls, file writes, or external command execution.