Audit History
video-ad-specs - 5 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v5 Latest | Jul 9, 2026, 11:43 AM | No confirmed findings | 0 | No capability change |
| v4 | Jul 9, 2026, 11:43 AM | No confirmed findings | 0 | No capability change |
| v3 | Jul 5, 2026, 03:15 PM | No confirmed findings | 2 | No capability change |
| v2 | Jul 5, 2026, 03:15 PM | No confirmed findings | 2 | No capability change |
| v1 | Jul 3, 2026, 01:13 PM | No confirmed findings | 10 | Baseline |
Jul 9, 2026, 11:43 AM
The static findings are false positives caused by Markdown code fences, inline code, documentation URLs, and advertising terminology. The skill uses transparent belt CLI examples for its stated workflow. No hidden execution, prompt injection, credential access, or malicious exfiltration intent was found.
Risk Factors
⚙️ External commands (14)
🌐 Network access (2)
Jul 9, 2026, 11:43 AM
The static findings are false positives caused by Markdown code fences, inline code, documentation URLs, and advertising terminology. The skill uses transparent belt CLI examples for its stated workflow. No hidden execution, prompt injection, credential access, or malicious exfiltration intent was found.
Risk Factors
⚙️ External commands (14)
🌐 Network access (2)
Jul 5, 2026, 03:15 PM
Most external command findings are false positives from Markdown backticks and fenced bash examples, not hidden Ruby execution. The skill intentionally depends on the belt CLI and external service links, so the remaining risk is disclosed third-party service and supply-chain exposure. No evidence of prompt injection, credential exfiltration, or obfuscated commands was found in SKILL.md.
Capability review items (2)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (14)
🌐 Network access (2)
Jul 5, 2026, 03:15 PM
Most external command findings are false positives from Markdown backticks and fenced bash examples, not hidden Ruby execution. The skill intentionally depends on the belt CLI and external service links, so the remaining risk is disclosed third-party service and supply-chain exposure. No evidence of prompt injection, credential exfiltration, or obfuscated commands was found in SKILL.md.
Capability review items (2)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (14)
🌐 Network access (2)
Jul 3, 2026, 01:13 PM
The skill is a Markdown guide for video ad planning and production with platform-specific specifications. Several static shell findings are real because the guide instructs users to run belt and npx commands that contact external services or install other skills; no prompt injection text was found.
Capability review items (10)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.