Audit History
genesis - 10 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v10 Latest | Jul 23, 2026, 10:55 AM | 2 confirmed | 4 | No capability change |
| v9 | Jul 7, 2026, 05:48 PM | 1 confirmed | 4 | Contains scriptsEnv variables |
| v8 | Jul 5, 2026, 05:07 AM | 2 confirmed | 6 | No capability change |
| v7 | Jun 28, 2026, 03:41 PM | 3 confirmed | 0 | Filesystem accessEnv variables |
| v6 | Jan 16, 2026, 06:46 PM | No confirmed findings | 0 | No capability change |
| v5 | Jan 16, 2026, 06:46 PM | No confirmed findings | 0 | No capability change |
| v4 | Jan 16, 2026, 06:46 PM | No confirmed findings | 0 | Network access |
| v3 | Jan 10, 2026, 11:10 AM | No confirmed findings | 0 | No capability change |
| v2 | Jan 10, 2026, 11:10 AM | No confirmed findings | 0 | No capability change |
| v1 | Jan 10, 2026, 11:10 AM | No confirmed findings | 0 | Baseline |
Jul 23, 2026, 10:55 AM
Most alerts are false positives from documentation URLs, standard Claude paths, UTF-8 Chinese text, and Markdown syntax. Four shell blocks execute filesystem, package, script, and server commands. They use unquoted user values and explicitly bypass confirmation, creating command injection and supply-chain execution risks.
Confirmed security concerns (2)
Capability review items (4)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (2)
๐ Filesystem access (12)
Jul 7, 2026, 05:48 PM
Most static findings are false positives from Markdown links, fenced code blocks, inline command examples, and expected Claude skill installation paths. Confirmed risk remains in setup blocks that run package managers, local scripts, and broad file rewrite commands. No evidence found of obfuscated payloads or prompt-injection language.
Confirmed security concerns (1)
Capability review items (4)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (2)
๐ Filesystem access (12)
Jul 5, 2026, 05:07 AM
Most static alerts are false positives from Go struct tags, Markdown code fences, local documentation URLs, and standard template configuration. Real concerns remain around direct shell-command execution with user-controlled placeholders and a Python config path that can print a password-bearing database URI.
Confirmed security concerns (2)
Capability review items (6)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
๐ Network access (15)
๐ Filesystem access (17)
โก Contains scripts (25)
โ๏ธ External commands (71)
Jun 28, 2026, 03:41 PM
Static analysis reported many high-risk patterns, but manual review found most were false positives from markdown examples, CSS color tokens, Go checksum data, fixed build paths, and SQLModel session.exec calls. The skill is still medium risk because it guides agents to copy files, run package managers and dev servers, read environment configuration, and generate networked backend templates. Publish with a warning to review commands and dependencies before execution.
Confirmed security concerns (3)
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
โ๏ธ External commands (7)
๐ Network access (3)
๐ Filesystem access (5)
โก Contains scripts (4)
Detected Patterns
Jan 16, 2026, 06:46 PM
Legitimate project scaffolding skill with standard development tools. Shell commands and script execution are directly related to project initialization purpose. No credential theft, network exfiltration, or obfuscation patterns detected. Static findings are false positives from pattern matching limitations on documentation and configuration files.
Static false positives ignored (1)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
โ๏ธ External commands (4)
โก Contains scripts (1)
๐ Network access (2)
Jan 16, 2026, 06:46 PM
Legitimate project scaffolding skill with standard development tools. Shell commands and script execution are directly related to project initialization purpose. No credential theft, network exfiltration, or obfuscation patterns detected. Static findings are false positives from pattern matching limitations on documentation and configuration files.
Static false positives ignored (1)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
โ๏ธ External commands (4)
โก Contains scripts (1)
๐ Network access (2)
Jan 16, 2026, 06:46 PM
Legitimate project scaffolding skill with standard development tools. Shell commands and script execution are directly related to project initialization purpose. No credential theft, network exfiltration, or obfuscation patterns detected. Static findings are false positives from pattern matching limitations on documentation and configuration files.
Static false positives ignored (1)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
โ๏ธ External commands (4)
โก Contains scripts (1)
๐ Network access (2)
Jan 10, 2026, 11:10 AM
Legitimate project scaffolding skill with standard development tools. Shell scripts and command execution are directly related to project initialization purpose. No credential theft, network exfiltration, or obfuscation patterns detected.
Risk Factors
โก Contains scripts (1)
โ๏ธ External commands (4)
Jan 10, 2026, 11:10 AM
Legitimate project scaffolding skill with standard development tools. Shell scripts and command execution are directly related to project initialization purpose. No credential theft, network exfiltration, or obfuscation patterns detected.
Risk Factors
โก Contains scripts (1)
โ๏ธ External commands (4)
Jan 10, 2026, 11:10 AM
Legitimate project scaffolding skill with standard development tools. Shell scripts and command execution are directly related to project initialization purpose. No credential theft, network exfiltration, or obfuscation patterns detected.