Audit History
cc-devflow-orchestrator - 10 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v10 Latest | Jul 9, 2026, 11:30 AM | No confirmed findings | 3 | No capability change |
| v9 | Jul 9, 2026, 11:30 AM | No confirmed findings | 3 | No capability change |
| v8 | Jul 6, 2026, 12:28 PM | No confirmed findings | 3 | No capability change |
| v7 | Jul 6, 2026, 12:28 PM | No confirmed findings | 3 | No capability change |
| v6 | Jun 29, 2026, 06:27 PM | No confirmed findings | 1 | No capability change |
| v5 | Jan 17, 2026, 04:20 AM | No confirmed findings | 0 | No capability change |
| v4 | Jan 17, 2026, 04:20 AM | No confirmed findings | 0 | External commands |
| v3 | Jan 10, 2026, 02:05 PM | No confirmed findings | 0 | No capability change |
| v2 | Jan 10, 2026, 02:05 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 10, 2026, 02:05 PM | No confirmed findings | 0 | Baseline |
Jul 9, 2026, 11:30 AM
Most static findings are Markdown backtick false positives around slash-command documentation, not Ruby or shell execution. Three findings are confirmed because the skill tells users to run local shell scripts under .claude/scripts; these fixed-path commands require review before execution.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (42)
Jul 9, 2026, 11:30 AM
Most static findings are Markdown backtick false positives around slash-command documentation, not Ruby or shell execution. Three findings are confirmed because the skill tells users to run local shell scripts under .claude/scripts; these fixed-path commands require review before execution.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (42)
Jul 6, 2026, 12:28 PM
Most static findings are false positives from Markdown backticks around workflow maps, file references, and CC-DevFlow slash-command names. Three lines recommend running local .claude/scripts shell helpers; those fixed paths are workflow-related but still require review before execution. No prompt injection, data exfiltration intent, or malicious social engineering was found.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (42)
Jul 6, 2026, 12:28 PM
Most static findings are false positives from Markdown backticks around workflow maps, file references, and CC-DevFlow slash-command names. Three lines recommend running local .claude/scripts shell helpers; those fixed paths are workflow-related but still require review before execution. No prompt injection, data exfiltration intent, or malicious social engineering was found.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (42)
Jun 29, 2026, 06:27 PM
Static analysis reported many high and medium alerts. Manual review found Markdown command examples, local file references, and workflow words, not executable code or reconnaissance logic. The skill recommends local commands, so users should trust the CC-DevFlow project files before following them.
Capability review items (1)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (7)
Jan 17, 2026, 04:20 AM
Pure documentation skill containing only workflow routing guidelines. No executable code, no file system access, no network calls, no command execution. All 80 static findings are false positives triggered by pattern detection on documentation text, not actual security issues.
Risk Factors
⚙️ External commands (45)
Jan 17, 2026, 04:20 AM
Pure documentation skill containing only workflow routing guidelines. No executable code, no file system access, no network calls, no command execution. All 80 static findings are false positives triggered by pattern detection on documentation text, not actual security issues.
Risk Factors
⚙️ External commands (45)
Jan 10, 2026, 02:05 PM
Pure documentation skill containing only workflow routing guidelines and links to other documentation. No executable code, no file system access beyond its own file, no network calls, no command execution. Lowest possible risk profile.
Jan 10, 2026, 02:05 PM
Pure documentation skill containing only workflow routing guidelines and links to other documentation. No executable code, no file system access beyond its own file, no network calls, no command execution. Lowest possible risk profile.
Jan 10, 2026, 02:05 PM
Pure documentation skill containing only workflow routing guidelines and links to other documentation. No executable code, no file system access beyond its own file, no network calls, no command execution. Lowest possible risk profile.