Audit History
lamindb - 7 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v7 Latest | Jul 6, 2026, 06:48 PM | No confirmed findings | 0 | No capability change |
| v6 | Jul 6, 2026, 06:48 PM | No confirmed findings | 0 | No capability change |
| v5 | Jun 30, 2026, 06:07 AM | 2 confirmed | 0 | No capability change |
| v4 | Jan 17, 2026, 06:09 AM | No confirmed findings | 0 | No capability change |
| v3 | Jan 17, 2026, 06:09 AM | No confirmed findings | 0 | No capability change |
| v2 | Jan 12, 2026, 04:43 PM | No confirmed findings | 0 | External commandsFilesystem accessEnv variables |
| v1 | Jan 4, 2026, 04:44 PM | No confirmed findings | 0 | Baseline |
Jul 6, 2026, 06:48 PM
The skill is documentation for LaminDB and contains no executable helper scripts, hidden automation, or prompt-injection override text. The static alerts are Markdown examples, setup placeholders, LaminDB alias usage, and generated report text rather than active command execution, credential access, or exfiltration. No semantic security issue was found beyond the static patterns.
Risk Factors
⚙️ External commands (49)
🌐 Network access (17)
📁 Filesystem access (49)
🔑 Env variables (17)
Jul 6, 2026, 06:48 PM
The skill is documentation for LaminDB and contains no executable helper scripts, hidden automation, or prompt-injection override text. The static alerts are Markdown examples, setup placeholders, LaminDB alias usage, and generated report text rather than active command execution, credential access, or exfiltration. No semantic security issue was found beyond the static patterns.
Risk Factors
⚙️ External commands (49)
🌐 Network access (17)
📁 Filesystem access (49)
🔑 Env variables (17)
Jun 30, 2026, 06:07 AM
Static analysis reported many high-risk patterns, but review found they are overwhelmingly Markdown documentation examples for LaminDB setup and usage. The only real concern is low operational risk from copied sudo and cloud credential examples; no prompt injection, malicious intent, obfuscation, or automatic execution was found.
Confirmed security concerns (2)
Static false positives ignored (6)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚙️ External commands (4)
🌐 Network access (4)
📁 Filesystem access (4)
Jan 17, 2026, 06:09 AM
This is a pure documentation skill containing only markdown files with code examples for LaminDB biological data management. All 607 static findings are false positives. The analyzer incorrectly flagged markdown code formatting (backticks, code blocks), documentation about cloud storage configuration (AWS, GCP credentials), and library usage patterns (ln.Artifact) as security issues. No executable code, scripts, credential harvesting, or malicious patterns exist.
Risk Factors
⚙️ External commands (3)
📁 Filesystem access (2)
🌐 Network access (2)
🔑 Env variables (2)
Jan 17, 2026, 06:09 AM
This is a pure documentation skill containing only markdown files with code examples for LaminDB biological data management. All 607 static findings are false positives. The analyzer incorrectly flagged markdown code formatting (backticks, code blocks), documentation about cloud storage configuration (AWS, GCP credentials), and library usage patterns (ln.Artifact) as security issues. No executable code, scripts, credential harvesting, or malicious patterns exist.
Risk Factors
⚙️ External commands (3)
📁 Filesystem access (2)
🌐 Network access (2)
🔑 Env variables (2)
Jan 12, 2026, 04:43 PM
This skill contains ONLY markdown documentation files for LaminDB, a legitimate open-source biological data management framework. All 570 static findings are FALSE POSITIVES because they detect patterns in documentation examples, not executable code. The skill has no Python files, no scripts, and poses no security risk.
Risk Factors
⚙️ External commands (414)
📁 Filesystem access (40)
🌐 Network access (17)
🔑 Env variables (14)
Jan 4, 2026, 04:44 PM
Pure documentation skill containing markdown files with LaminDB guidance and Python examples. No executable code, scripts, network calls, file access, or environment variable reads by the skill itself. All content is informational reference material.