Audit History
ecommerce - 9 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v9 Latest | Jul 6, 2026, 09:48 AM | No confirmed findings | 0 | No capability change |
| v8 | Jul 6, 2026, 09:48 AM | No confirmed findings | 0 | External commandsNetwork access |
| v7 | Jun 29, 2026, 08:51 AM | 2 confirmed | 0 | No capability change |
| v6 | Jan 21, 2026, 05:14 PM | No confirmed findings | 0 | Network accessExternal commands |
| v5 | Jan 17, 2026, 12:37 AM | No confirmed findings | 0 | No capability change |
| v4 | Jan 17, 2026, 12:37 AM | No confirmed findings | 0 | Network accessExternal commands |
| v3 | Jan 10, 2026, 01:23 PM | No confirmed findings | 0 | No capability change |
| v2 | Jan 10, 2026, 01:23 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 10, 2026, 01:23 PM | No confirmed findings | 0 | Baseline |
Jul 6, 2026, 09:48 AM
No evidence found of command execution, system reconnaissance, obfuscation, malicious networking, or prompt injection. All static findings are false positives from Markdown fences, sample API routes, a public documentation URL, and Unicode-rich Japanese content. The skill provides e-commerce design guidance only.
Risk Factors
βοΈ External commands (16)
π Network access (1)
Jul 6, 2026, 09:48 AM
No evidence found of command execution, system reconnaissance, obfuscation, malicious networking, or prompt injection. All static findings are false positives from Markdown fences, sample API routes, a public documentation URL, and Unicode-rich Japanese content. The skill provides e-commerce design guidance only.
Risk Factors
βοΈ External commands (16)
π Network access (1)
Jun 29, 2026, 08:51 AM
Static analysis reported weak crypto, external command, reconnaissance, entropy, and hardcoded URL patterns. Manual review found markdown documentation, fenced examples, REST route text, and one public API documentation link with no executable commands, cryptography, system probing, exfiltration, or prompt injection.
Confirmed security concerns (2)
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Jan 21, 2026, 05:14 PM
Pure documentation skill containing only markdown guidance for e-commerce development. Static findings flagged pattern matches on security terminology (encrypt, HTTPS), tool names (Claude Code), and markdown formatting (backticks, API paths). All findings are false positives - the skill poses no security risk and contains no executable code.
Jan 17, 2026, 12:37 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
π Network access (1)
Detected Patterns
Jan 17, 2026, 12:37 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
π Network access (1)
Detected Patterns
Jan 10, 2026, 01:23 PM
Pure documentation skill containing only markdown guidance for e-commerce development. No executable code, no network calls, no file system access beyond reading the markdown file.
Jan 10, 2026, 01:23 PM
Pure documentation skill containing only markdown guidance for e-commerce development. No executable code, no network calls, no file system access beyond reading the markdown file.
Jan 10, 2026, 01:23 PM
Pure documentation skill containing only markdown guidance for e-commerce development. No executable code, no network calls, no file system access beyond reading the markdown file.