Audit History
building-skills - 8 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v8 Latest | Jul 5, 2026, 05:18 AM | 1 confirmed | 0 | No capability change |
| v7 | Jul 5, 2026, 05:18 AM | 1 confirmed | 0 | Contains scripts |
| v6 | Jun 28, 2026, 06:41 PM | 2 confirmed | 0 | Contains scripts |
| v5 | Jan 16, 2026, 07:58 PM | No confirmed findings | 0 | No capability change |
| v4 | Jan 16, 2026, 07:58 PM | No confirmed findings | 0 | External commandsFilesystem access |
| v3 | Jan 10, 2026, 11:52 AM | 1 confirmed | 0 | No capability change |
| v2 | Jan 10, 2026, 11:52 AM | 1 confirmed | 0 | No capability change |
| v1 | Jan 10, 2026, 11:52 AM | 1 confirmed | 0 | Baseline |
Jul 5, 2026, 05:18 AM
The static findings are false positives caused by Markdown code fences, inline code examples, example paths, and validator messages. No prompt injection, credential exfiltration, or malicious command execution was found. The remaining concern is broad pre-approved Write, Edit, and Bash access in a community skill.
Confirmed security concerns (1)
Risk Factors
⚙️ External commands (97)
📁 Filesystem access (2)
Jul 5, 2026, 05:18 AM
The static findings are false positives caused by Markdown code fences, inline code examples, example paths, and validator messages. No prompt injection, credential exfiltration, or malicious command execution was found. The remaining concern is broad pre-approved Write, Edit, and Bash access in a community skill.
Confirmed security concerns (1)
Risk Factors
⚙️ External commands (97)
📁 Filesystem access (2)
Jun 28, 2026, 06:41 PM
Static analysis reported many high-risk patterns, but review found the weak-crypto and Ruby backtick alerts are false positives from Markdown examples, validation text, and product terminology. The confirmed risk is medium because the skill pre-approves Write, Edit, and Bash for a community skill and includes a local validator script that reads user-supplied paths. No evidence found of network access, credential exfiltration, destructive commands, or prompt injection attempts.
Confirmed security concerns (2)
Static false positives ignored (3)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚡ Contains scripts (2)
📁 Filesystem access (3)
Detected Patterns
Jan 16, 2026, 07:58 PM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
⚙️ External commands (149)
📁 Filesystem access (2)
Detected Patterns
Jan 16, 2026, 07:58 PM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
⚙️ External commands (149)
📁 Filesystem access (2)
Detected Patterns
Jan 10, 2026, 11:52 AM
The skill has a validation script and bash execution capability, but both are controlled and serve legitimate purposes for skill development. No network calls, no credential access, no persistence mechanisms, and no obfuscated code. Risk is appropriate for its development-focused purpose.
Confirmed security concerns (1)
Jan 10, 2026, 11:52 AM
The skill has a validation script and bash execution capability, but both are controlled and serve legitimate purposes for skill development. No network calls, no credential access, no persistence mechanisms, and no obfuscated code. Risk is appropriate for its development-focused purpose.
Confirmed security concerns (1)
Jan 10, 2026, 11:52 AM
The skill has a validation script and bash execution capability, but both are controlled and serve legitimate purposes for skill development. No network calls, no credential access, no persistence mechanisms, and no obfuscated code. Risk is appropriate for its development-focused purpose.