Versioned security assessment

Report ID: SA-8B5AD159

9/28/2026, 4:22:09 PM

subgraph-migrate security assessment v1

Skill Security Certification Report

Audit History
Scanner version 3.0.0 Audit model: codex Latest published report
Skill name
subgraph-migrate
Version
v1
Maintainer
goldsky-io
Coverage
2 Files scanned · 143 Lines analyzed
Policy version
skillstore-security-audit-policy-v1

Highest confirmed finding severity

Critical

1 confirmed security finding requires attention.

Installation context

Check the current Skill page

This page summarizes report evidence only. The Skill page provides the canonical install advisory.

Open current Skill page

This report does not block or authorize the manifest or ZIP.

The 38 external-command findings are false positives caused by Markdown backticks, code fences, and inline command examples in SKILL.md. The installer command at SKILL.md:55 pipes a remote script into a shell and is a confirmed critical supply-chain risk; the three hardcoded URLs are expected service or documentation endpoints, with the installer URL retaining a low network risk.

Report position

Latest published report

Latest refers to the report sequence, not to artifact currentness.

Audit attestation

Active attestation

A public attestation is available for this exact report.

Human verification

Not verified

No human verification is recorded for this report.

Coverage

2 Files scanned · 143 Lines analyzed

2 items shown for review

Limitations

This report does not claim runtime or sandbox execution and does not prove the absence of side effects.

Evidence chain

Follow the evidence from source binding to the install contract. Available evidence supports verification; it is not a safety guarantee.

  1. Source

    Commit and path bound

  2. Artifact

    Content and tree hashes bound

  3. Audit

    Complete

  4. Install contract

    Open manifest to verify

    Open manifest

Capabilities observed

Observed means this report recorded supporting evidence. Not recorded does not prove that a capability is absent.

Contains scripts

May execute code included with the Skill.

Not recorded by this audit

Network access

May connect to external services.

Observed in 3 evidence locations

Filesystem access

May read or write local files.

Not recorded by this audit

Env variables

May read values from the process environment.

Not recorded by this audit

External commands

May invoke commands or programs outside the Skill.

Observed in 38 evidence locations

Capability review items (1)
Low
Hardcoded URL
curl https://goldsky.com | sh
The line uses a fixed external URL to download the CLI installer, creating a real network and supply-chain dependency. The critical risk comes from piping that response into a shell, while this verdict records the separate network exposure.

Risk findings

Confirmed security concerns are separated from items that still need review.

Confirmed security concerns (1)

RISK-001 Critical
Pipe to shell pattern
curl https://goldsky.com | sh
curl https://goldsky.com | sh executes content fetched from a remote server without local inspection, signature verification, or version pinning. A compromised server or transit path could execute arbitrary commands with the user's shell privileges.

Remediation

Suggested fixes recorded by this audit. Applying them is the maintainer’s responsibility.

  1. FIX-001
    Critical
    SKILL.md:55 downloads a remote script and pipes it directly into a shell.
    Replace the pipe-to-shell installer with a package-manager install or a documented download, checksum, signature, and inspection workflow.
  2. FIX-002
    High
    The CLI installation procedure depends on a mutable remote endpoint.
    Pin a specific CLI release and publish verified checksums or signatures for each supported platform.
  3. FIX-003
    Low
    The migration steps rely on external Goldsky services and example endpoints.
    Label service URLs as examples, verify TLS and the destination before use, and avoid placing credentials in commands or URLs.

Expert evidence

Immutable subject identity, scanner metadata, dismissed matches, and source-level evidence.

Artifact subject

Marketplace commit
8b5ad1599e7c55e9b6c627bca3f556f6e9061cb1
Content hash
46e5d9f0ad41864fe3e64f0e96ceed7b2f7026f66ca4915147337504da520477
Tree hash
2cf4c59deed595c54f7cce0243fa56efdb55b5a797846ada1c28c200413fde4c
Skill path
skills/goldsky-io/subgraph-migrate
Audit payload hash
28160bb733fd35a6180f96bc3658a176

Analysis metadata

Audit model: codex

Analysis state: Complete

Scope is limited to the recorded files, lines, methods, and evidence. No runtime or sandbox execution is claimed.

Verify and export

The manifest and lockfile bind install artifacts to cryptographic hashes. This integrity claim is separate from the security assessment.

Audit attestation: active