Audit History
esm - 9 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v9 Latest | Jul 9, 2026, 04:23 AM | 1 confirmed | 0 | No capability change |
| v8 | Jul 9, 2026, 04:23 AM | 1 confirmed | 0 | No capability change |
| v7 | Jul 5, 2026, 05:29 PM | 2 confirmed | 0 | Contains scripts |
| v6 | Jun 30, 2026, 06:06 AM | 2 confirmed | 0 | Contains scripts |
| v5 | Jan 21, 2026, 05:24 PM | No confirmed findings | 0 | No capability change |
| v4 | Jan 17, 2026, 07:02 AM | No confirmed findings | 0 | No capability change |
| v3 | Jan 17, 2026, 07:02 AM | No confirmed findings | 0 | Contains scriptsExternal commands |
| v2 | Jan 12, 2026, 04:38 PM | No confirmed findings | 0 | Filesystem access |
| v1 | Jan 4, 2026, 04:19 PM | No confirmed findings | 0 | Baseline |
Jul 9, 2026, 04:23 AM
Static findings are mostly false positives caused by markdown examples, scientific file outputs, legitimate Forge API documentation, and model method names. No prompt injection or malware-like code execution was found, but the skill contains promotional steering toward an external hosted platform.
Confirmed security concerns (1)
Risk Factors
⚡ Contains scripts (3)
🌐 Network access (15)
📁 Filesystem access (13)
⚙️ External commands (41)
Jul 9, 2026, 04:23 AM
Static findings are mostly false positives caused by markdown examples, scientific file outputs, legitimate Forge API documentation, and model method names. No prompt injection or malware-like code execution was found, but the skill contains promotional steering toward an external hosted platform.
Confirmed security concerns (1)
Risk Factors
⚡ Contains scripts (3)
🌐 Network access (15)
📁 Filesystem access (13)
⚙️ External commands (41)
Jul 5, 2026, 05:29 PM
The static findings are false positives caused by Markdown examples, scientific file outputs, documented Forge URLs, and protein-model terminology. I found no evidence of executable malware, credential exfiltration, or unauthorized host reconnaissance. However, the package includes self-authored safety verdicts and promotional steering that should be removed or clearly separated before marketplace publication.
Confirmed security concerns (2)
Static false positives ignored (1)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚡ Contains scripts (3)
🌐 Network access (15)
📁 Filesystem access (13)
⚙️ External commands (41)
Jun 30, 2026, 06:06 AM
Static analysis reported critical heuristic risk, but review found no malicious code execution, C2 behavior, credential exfiltration, or prompt-injection attempt. Most high-volume findings are Markdown examples, protein-model terminology, API documentation, or non-security cache hashing. The main publishable warning is unsafe pickle deserialization in cache examples and normal remote Forge API token usage.
Confirmed security concerns (2)
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
🌐 Network access (4)
📁 Filesystem access (5)
⚙️ External commands (2)
Detected Patterns
Jan 21, 2026, 05:24 PM
All 368 static findings are false positives. The scanner incorrectly flagged markdown documentation patterns. The skill provides documentation for legitimate protein language models from EvolutionaryScale. All code examples are standard scientific workflows for protein engineering. Python f-strings with underscores (protein masks), MD5 for cache keys, and ML terminology were misclassified as security issues.
Risk Factors
⚡ Contains scripts (3)
🌐 Network access (20)
⚙️ External commands (188)
📁 Filesystem access (13)
Jan 17, 2026, 07:02 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
⚡ Contains scripts (3)
🌐 Network access (20)
⚙️ External commands (188)
📁 Filesystem access (13)
Detected Patterns
Jan 17, 2026, 07:02 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
⚡ Contains scripts (3)
🌐 Network access (20)
⚙️ External commands (188)
📁 Filesystem access (13)
Detected Patterns
Jan 12, 2026, 04:38 PM
All 319 static findings are FALSE POSITIVES. The scanner misidentified markdown code formatting (backticks) as shell commands, HTTPS URLs as weak crypto, PyTorch's model.eval() as dynamic code execution, and standard file I/O as system reconnaissance. This is legitimate scientific documentation for a protein language model library.
Risk Factors
🌐 Network access (1)
📁 Filesystem access (1)
Jan 4, 2026, 04:19 PM
This is a pure documentation skill containing only markdown files with API references and code examples for protein modeling. No executable code, scripts, file system access, or network calls are present in the skill itself. The network references in documentation describe how to use the Forge API, but the skill does not make network requests.