Audit History
scope - 4 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v4 Latest | Jul 23, 2026, 01:02 PM | 2 confirmed | 0 | No capability change |
| v3 | Jul 22, 2026, 12:38 AM | No confirmed findings | 0 | No capability change |
| v2 | Jul 22, 2026, 12:38 AM | No confirmed findings | 0 | No capability change |
| v1 | Jul 22, 2026, 12:38 AM | No confirmed findings | 0 | Baseline |
Jul 23, 2026, 01:02 PM
All 31 external-command alerts are Markdown formatting or benign command documentation, not Ruby or shell backtick execution. The entropy alert reflects Korean and Unicode text, not obfuscation. Two medium semantic risks remain around unrestricted research paths and treating loaded research as trusted instructions.
Confirmed security concerns (2)
Risk Factors
โ๏ธ External commands (31)
Jul 22, 2026, 12:38 AM
All 31 external-command detections are false positives caused by Markdown backticks and fenced examples. The one documented mkdir example is a fixed, benign directory-creation instruction, not embedded executable code. The high-entropy alert is also a false positive because the file is readable Korean Markdown.
Risk Factors
โ๏ธ External commands (31)
Jul 22, 2026, 12:38 AM
All 31 external-command detections are false positives caused by Markdown backticks and fenced examples. The one documented mkdir example is a fixed, benign directory-creation instruction, not embedded executable code. The high-entropy alert is also a false positive because the file is readable Korean Markdown.
Risk Factors
โ๏ธ External commands (31)
Jul 22, 2026, 12:38 AM
All 31 external-command detections are false positives caused by Markdown backticks and fenced examples. The one documented mkdir example is a fixed, benign directory-creation instruction, not embedded executable code. The high-entropy alert is also a false positive because the file is readable Korean Markdown.