Audit History
file-organizer - 10 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v10 Latest | Jul 23, 2026, 01:51 PM | 2 confirmed | 0 | No capability change |
| v9 | Jul 8, 2026, 05:42 AM | No confirmed findings | 0 | No capability change |
| v8 | Jul 5, 2026, 08:54 AM | No confirmed findings | 0 | Filesystem access |
| v7 | Jun 29, 2026, 01:24 PM | No confirmed findings | 3 | Filesystem access |
| v6 | Jan 21, 2026, 06:30 PM | No confirmed findings | 1 | No capability change |
| v5 | Jan 17, 2026, 01:26 AM | No confirmed findings | 0 | No capability change |
| v4 | Jan 17, 2026, 01:26 AM | No confirmed findings | 0 | External commands |
| v3 | Jan 7, 2026, 12:56 AM | No confirmed findings | 0 | No capability change |
| v2 | Jan 7, 2026, 12:56 AM | No confirmed findings | 0 | No capability change |
| v1 | Jan 7, 2026, 12:56 AM | No confirmed findings | 0 | Baseline |
Jul 23, 2026, 01:51 PM
All 12 static alerts are false positives caused by Markdown fences or benign prose; no Ruby backtick execution or reconnaissance appears. The skill nevertheless presents shell commands that accept unquoted directory placeholders and a plain `mv` example that may overwrite files. These operational risks require safer command construction and collision handling before unattended use.
Confirmed security concerns (2)
Risk Factors
Jul 8, 2026, 05:42 AM
All static detections were adjudicated as false positives. The external-command matches are Markdown code fences with illustrative shell examples, and the blocker matches are ordinary file naming guidance. No prompt injection, credential access, network calls, or hidden execution logic was found in SKILL.md.
Risk Factors
Jul 5, 2026, 08:54 AM
No malicious intent, prompt injection, network exfiltration, or runtime code was found. Static alerts are false positives from Markdown code fences, inline path examples, and ordinary prose in SKILL.md. The skill documents optional local filesystem commands and requires approval before destructive cleanup.
Risk Factors
⚙️ External commands (53)
Jun 29, 2026, 01:24 PM
Static analysis flagged many Markdown code fences as Ruby backtick execution, but no Ruby execution was found in SKILL.md. The skill does instruct agents to run shell commands and move files, so it is a legitimate productivity skill with medium operational risk. Weak crypto and reconnaissance alerts at the reported lines are false positives; the only MD5 usage is for duplicate detection, not security.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (1)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
📁 Filesystem access (3)
⚙️ External commands (5)
Detected Patterns
Jan 21, 2026, 06:30 PM
This skill is a documentation-only resource providing instructions for file organization tasks. Static analysis flagged 71 patterns (md5 usage, shell commands), but all are false positives - they are instructional examples in markdown code blocks, not executable code. The skill teaches users to run standard file system commands like find, mv, and mkdir. No malicious intent detected.
Capability review items (1)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (53)
Jan 17, 2026, 01:26 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
⚙️ External commands (53)
Detected Patterns
Jan 17, 2026, 01:26 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
⚙️ External commands (53)
Detected Patterns
Jan 7, 2026, 12:56 AM
This is a prompt-based skill containing only natural language instructions for the AI. No executable code, scripts, network calls, or direct filesystem access patterns are present. The skill relies on the AI's built-in tools and requires explicit user consent before any file operations.
Jan 7, 2026, 12:56 AM
This is a prompt-based skill containing only natural language instructions for the AI. No executable code, scripts, network calls, or direct filesystem access patterns are present. The skill relies on the AI's built-in tools and requires explicit user consent before any file operations.
Jan 7, 2026, 12:56 AM
This is a prompt-based skill containing only natural language instructions for the AI. No executable code, scripts, network calls, or direct filesystem access patterns are present. The skill relies on the AI's built-in tools and requires explicit user consent before any file operations.