Audit History
Plugin Structure - 9 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v9 Latest | Jul 20, 2026, 03:38 AM | No confirmed findings | 0 | No capability change |
| v8 | Jul 8, 2026, 05:41 AM | No confirmed findings | 0 | No capability change |
| v7 | Jul 6, 2026, 07:51 PM | No confirmed findings | 0 | No capability change |
| v6 | Jun 30, 2026, 11:07 AM | No confirmed findings | 0 | No capability change |
| v5 | Jan 17, 2026, 08:13 AM | No confirmed findings | 0 | No capability change |
| v4 | Jan 17, 2026, 08:13 AM | No confirmed findings | 0 | External commandsNetwork accessFilesystem accessEnv variables |
| v3 | Jan 9, 2026, 03:00 PM | No confirmed findings | 0 | No capability change |
| v2 | Jan 9, 2026, 03:00 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 9, 2026, 03:00 PM | No confirmed findings | 0 | Baseline |
Jul 20, 2026, 03:38 AM
All 218 static findings are false positives caused by Markdown syntax, code fences, documentation examples, and configuration placeholders. The skill provides structural guidance only; no evidence of prompt injection, credential exfiltration, hidden execution, or malicious intent was found.
Risk Factors
⚙️ External commands (50)
🌐 Network access (17)
📁 Filesystem access (8)
🔑 Env variables (3)
Jul 8, 2026, 05:41 AM
Static analysis flagged many command, network, filesystem, and environment patterns, but the evidence is documentation and example content rather than executable skill code. I found no prompt injection attempt and no intent to exfiltrate data, execute unauthorized commands, or bypass review.
Risk Factors
⚙️ External commands (177)
🌐 Network access (17)
📁 Filesystem access (8)
🔑 Env variables (3)
Jul 6, 2026, 07:51 PM
The static findings are documentation false positives from Markdown fences, inline code, sample URLs, placeholder environment variables, and invalid path examples. No active install-time or runtime behavior in this skill executes commands, accesses secrets, performs network calls, or attempts prompt injection.
Risk Factors
⚙️ External commands (177)
🌐 Network access (17)
📁 Filesystem access (8)
🔑 Env variables (3)
Jun 30, 2026, 11:07 AM
Official Anthropic source reviewed with minimal audit scope. Static risk indicators are documentation examples for hooks, MCP servers, paths, and environment variables, not active execution logic.
Risk Factors
⚙️ External commands (3)
🌐 Network access (2)
📁 Filesystem access (3)
🔑 Env variables (2)
Jan 17, 2026, 08:13 AM
Official Anthropic skill containing only documentation and guidance files. No executable code, network operations, or filesystem modifications. Safe for marketplace distribution.
Risk Factors
⚙️ External commands (455)
🌐 Network access (20)
📁 Filesystem access (8)
Jan 17, 2026, 08:13 AM
Official Anthropic skill containing only documentation and guidance files. No executable code, network operations, or filesystem modifications. Safe for marketplace distribution.
Risk Factors
⚙️ External commands (455)
🌐 Network access (20)
📁 Filesystem access (8)
Jan 9, 2026, 03:00 PM
Official Anthropic skill containing only documentation and guidance files. No executable code, network operations, or filesystem modifications. Safe for marketplace distribution.
Jan 9, 2026, 03:00 PM
Official Anthropic skill containing only documentation and guidance files. No executable code, network operations, or filesystem modifications. Safe for marketplace distribution.
Jan 9, 2026, 03:00 PM
Official Anthropic skill containing only documentation and guidance files. No executable code, network operations, or filesystem modifications. Safe for marketplace distribution.