Audit History
generating-rbs - 10 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v10 Latest | Jul 21, 2026, 05:48 AM | No confirmed findings | 0 | No capability change |
| v9 | Jul 9, 2026, 04:05 AM | No confirmed findings | 0 | No capability change |
| v8 | Jul 5, 2026, 01:38 PM | No confirmed findings | 0 | No capability change |
| v7 | Jul 5, 2026, 01:38 PM | No confirmed findings | 0 | Contains scriptsEnv variables |
| v6 | Jun 29, 2026, 06:41 PM | 2 confirmed | 0 | Contains scriptsEnv variables |
| v5 | Jan 17, 2026, 03:33 AM | No confirmed findings | 0 | No capability change |
| v4 | Jan 17, 2026, 03:33 AM | No confirmed findings | 0 | Network accessContains scriptsExternal commandsFilesystem accessEnv variables |
| v3 | Jan 10, 2026, 02:13 PM | No confirmed findings | 0 | No capability change |
| v2 | Jan 10, 2026, 02:13 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 10, 2026, 02:13 PM | No confirmed findings | 0 | Baseline |
Jul 21, 2026, 05:48 AM
All 400 representative static findings are false positives caused by RBS reference signatures, documentation syntax, and bundled Zeitwerk example source. The skill instructions generate and validate type signatures; no evidence shows secret collection, network transfer, shell execution, identity changes, or prompt-injection intent. Static review was capped at 400/1166 representative findings; omitted static matches are unconfirmed, so automatic publishing stays disabled until manual review.
Risk Factors
⚡ Contains scripts (3)
⚙️ External commands (50)
🌐 Network access (50)
📁 Filesystem access (8)
Jul 9, 2026, 04:05 AM
The reported static findings are false positives from bundled RBS reference signatures, Ruby standard library API declarations, Markdown formatting, and vendored Zeitwerk examples. No evidence of prompt injection, credential theft, malicious network use, or hidden command execution was found in the reviewed context. Static review was capped at 400/1166 representative findings; omitted static matches are unconfirmed, so automatic publishing stays disabled until manual review.
Risk Factors
⚡ Contains scripts (3)
⚙️ External commands (50)
🌐 Network access (50)
📁 Filesystem access (8)
Jul 5, 2026, 01:38 PM
AI review found the static alerts are scanner noise from Markdown code formatting, RBS signatures, and bundled reference Ruby source. No prompt-injection instructions, credential exfiltration intent, or active install/runtime behavior were found. Command guidance is limited to fixed RBS validation tools.
Static false positives ignored (21)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚡ Contains scripts (3)
⚙️ External commands (199)
🌐 Network access (64)
📁 Filesystem access (8)
Jul 5, 2026, 01:38 PM
AI review found the static alerts are scanner noise from Markdown code formatting, RBS signatures, and bundled reference Ruby source. No prompt-injection instructions, credential exfiltration intent, or active install/runtime behavior were found. Command guidance is limited to fixed RBS validation tools.
Static false positives ignored (21)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚡ Contains scripts (3)
⚙️ External commands (199)
🌐 Network access (64)
📁 Filesystem access (8)
Jun 29, 2026, 06:41 PM
Static analysis reported many severe patterns, but representative review shows they are mostly RBS reference signatures, Markdown grammar examples, and bundled Ruby examples used as documentation. No malicious intent or prompt injection was found. The remaining real risks are intended filesystem edits and local validation commands, so publication is acceptable with a medium-risk warning.
Confirmed security concerns (2)
Static false positives ignored (3)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚙️ External commands (2)
📁 Filesystem access (2)
🌐 Network access (2)
Detected Patterns
Jan 17, 2026, 03:33 AM
Static findings (1979) are false positives. The scanner misinterprets reference documentation files as executable code. All external_commands findings are markdown code blocks, blocker findings are RBS type signatures, and network findings are documentation links. The skill only reads Ruby files and generates RBS signatures - no network calls, credential access, or dangerous capabilities exist.
Risk Factors
🌐 Network access (80)
⚡ Contains scripts (3)
⚙️ External commands (722)
📁 Filesystem access (11)
Jan 17, 2026, 03:33 AM
Static findings (1979) are false positives. The scanner misinterprets reference documentation files as executable code. All external_commands findings are markdown code blocks, blocker findings are RBS type signatures, and network findings are documentation links. The skill only reads Ruby files and generates RBS signatures - no network calls, credential access, or dangerous capabilities exist.
Risk Factors
🌐 Network access (80)
⚡ Contains scripts (3)
⚙️ External commands (722)
📁 Filesystem access (11)
Jan 10, 2026, 02:13 PM
Pure prompt-based skill containing only instructional content for AI assistants. No executable code, scripts, network operations, or filesystem access beyond bundled reference files. Reference materials are example RBS signatures and Ruby code patterns.
Jan 10, 2026, 02:13 PM
Pure prompt-based skill containing only instructional content for AI assistants. No executable code, scripts, network operations, or filesystem access beyond bundled reference files. Reference materials are example RBS signatures and Ruby code patterns.
Jan 10, 2026, 02:13 PM
Pure prompt-based skill containing only instructional content for AI assistants. No executable code, scripts, network operations, or filesystem access beyond bundled reference files. Reference materials are example RBS signatures and Ruby code patterns.