Audit History
chronicle-context-retriever - 8 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v8 Latest | Jul 5, 2026, 07:07 AM | No confirmed findings | 0 | No capability change |
| v7 | Jul 5, 2026, 07:07 AM | No confirmed findings | 0 | No capability change |
| v6 | Jun 28, 2026, 10:20 PM | 1 confirmed | 3 | No capability change |
| v5 | Jan 16, 2026, 09:34 PM | No confirmed findings | 0 | No capability change |
| v4 | Jan 16, 2026, 09:34 PM | No confirmed findings | 0 | External commandsFilesystem access |
| v3 | Jan 10, 2026, 12:06 PM | No confirmed findings | 0 | No capability change |
| v2 | Jan 10, 2026, 12:06 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 10, 2026, 12:06 PM | No confirmed findings | 0 | Baseline |
Jul 5, 2026, 07:07 AM
The static findings are false positives caused by Markdown backticks, command examples, and natural-language prompts in SKILL.md. I found no prompt injection, malware intent, data exfiltration instruction, path traversal behavior, or executable shell code in the skill content.
Risk Factors
⚙️ External commands (53)
📁 Filesystem access (1)
Jul 5, 2026, 07:07 AM
The static findings are false positives caused by Markdown backticks, command examples, and natural-language prompts in SKILL.md. I found no prompt injection, malware intent, data exfiltration instruction, path traversal behavior, or executable shell code in the skill content.
Risk Factors
⚙️ External commands (53)
📁 Filesystem access (1)
Jun 28, 2026, 10:20 PM
The static scanner flagged many markdown backticks as Ruby shell execution, plus path traversal, weak crypto, and reconnaissance patterns. Review found no executable script, malicious prompt injection, network exfiltration, or crypto use in SKILL.md, but the skill intentionally guides agents to query local Chronicle history and optionally run Chronicle CLI commands, which can expose sensitive development context if used without user intent.
Confirmed security concerns (1)
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚙️ External commands (53)
📁 Filesystem access (1)
Detected Patterns
Jan 16, 2026, 09:34 PM
This skill is a pure documentation file (SKILL.md) with no executable code, network calls, or file system access. It only provides instructions for using existing Chronicle MCP tools and CLI commands. All 77 static findings are false positives triggered by the static analyzer misinterpreting documentation elements (markdown code backticks, example paths, and documentation terminology) as security threats.
Risk Factors
⚙️ External commands (53)
📁 Filesystem access (1)
Jan 16, 2026, 09:34 PM
This skill is a pure documentation file (SKILL.md) with no executable code, network calls, or file system access. It only provides instructions for using existing Chronicle MCP tools and CLI commands. All 77 static findings are false positives triggered by the static analyzer misinterpreting documentation elements (markdown code backticks, example paths, and documentation terminology) as security threats.
Risk Factors
⚙️ External commands (53)
📁 Filesystem access (1)
Jan 10, 2026, 12:06 PM
This skill is a documentation-only tool that provides instructions for searching Chronicle databases. It contains no executable code, network calls, or file system access. The skill only explains how to use existing Chronicle MCP tools or CLI commands.
Jan 10, 2026, 12:06 PM
This skill is a documentation-only tool that provides instructions for searching Chronicle databases. It contains no executable code, network calls, or file system access. The skill only explains how to use existing Chronicle MCP tools or CLI commands.
Jan 10, 2026, 12:06 PM
This skill is a documentation-only tool that provides instructions for searching Chronicle databases. It contains no executable code, network calls, or file system access. The skill only explains how to use existing Chronicle MCP tools or CLI commands.