Audit History
base - 5 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v5 Latest | Aug 14, 2026, 09:53 AM | 2 confirmed | 0 | No capability change |
| v4 | Jul 5, 2026, 11:09 PM | No confirmed findings | 0 | No capability change |
| v3 | Jul 5, 2026, 11:09 PM | No confirmed findings | 0 | Filesystem access |
| v2 | Jun 30, 2026, 12:38 PM | No confirmed findings | 4 | Network accessFilesystem access |
| v1 | Feb 24, 2026, 03:56 PM | No confirmed findings | 0 | Baseline |
Aug 14, 2026, 09:53 AM
All 20 static findings are false positives caused by Markdown fences, reference links, placeholder connection text, localhost configuration, or unrelated list text. The review identified two separate medium-severity guidance risks: a broad process termination command and a database example that handles a plaintext password without secure-storage guidance. No prompt injection, malicious network activity, or data exfiltration intent was found.
Confirmed security concerns (2)
Risk Factors
⚙️ External commands (13)
🌐 Network access (4)
Jul 5, 2026, 11:09 PM
No confirmed security issues were found in the reviewed skill. The static findings are Markdown fences, legitimate LibreOffice examples, documentation links, and a localhost UNO socket command. No prompt injection, data exfiltration intent, or malicious control-flow instructions were present in SKILL.md.
Risk Factors
⚙️ External commands (13)
🌐 Network access (4)
Jul 5, 2026, 11:09 PM
No confirmed security issues were found in the reviewed skill. The static findings are Markdown fences, legitimate LibreOffice examples, documentation links, and a localhost UNO socket command. No prompt injection, data exfiltration intent, or malicious control-flow instructions were present in SKILL.md.
Risk Factors
⚙️ External commands (13)
🌐 Network access (4)
Jun 30, 2026, 12:38 PM
The static Ruby backtick and weak cryptography findings are false positives caused by Markdown fences and the word Base. The skill is not malicious, but it includes database password handling, file URL writes, local automation sockets, and process-killing commands that require user caution.
Capability review items (4)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚙️ External commands (4)
🌐 Network access (4)
📁 Filesystem access (3)
Detected Patterns
Feb 24, 2026, 03:56 PM
Static analyzer flagged 25 patterns but all are false positives. External command detections are legitimate LibreOffice CLI examples. URL references point to official documentation. Cryptographic warnings are incorrect - no crypto code exists. The skill is documentation for database automation using LibreOffice Base UNO API with no security concerns.