Skills mermaid-expert Audit History
📦

Audit History

mermaid-expert - 5 audits

Version comparison

Capability and finding changes across audited versions, newest first.

VersionDateResultReview itemsChange vs previous
v5 LatestAug 4, 2026, 01:55 PM No confirmed findings0No capability change
v4 Jul 7, 2026, 12:25 AM No confirmed findings0No capability change
v3 Jul 7, 2026, 12:25 AM No confirmed findings0External commands
v2 Jun 30, 2026, 05:11 PM No confirmed findings0No capability change
v1 Feb 25, 2026, 09:46 AM No confirmed findings0Baseline

Aug 4, 2026, 01:55 PM

All nine static findings are false positives caused by Markdown backticks and ordinary Mermaid guidance. The skill contains no executable commands, system reconnaissance, prompt injection, or other semantic security concerns.

1
Files scanned
64
Lines analyzed
1
Review items
0
False positives ignored

Risk Factors

⚙️ External commands (2)
Audited by: codex

Jul 7, 2026, 12:25 AM

All static findings appear to be false positives. The backtick alerts are Markdown inline code and a fenced list of Mermaid diagram types, not shell execution. No prompt injection or malicious intent evidence was found in SKILL.md.

1
Files scanned
60
Lines analyzed
1
Review items
0
False positives ignored

Risk Factors

⚙️ External commands (2)
Audited by: codex

Jul 7, 2026, 12:25 AM

All static findings appear to be false positives. The backtick alerts are Markdown inline code and a fenced list of Mermaid diagram types, not shell execution. No prompt injection or malicious intent evidence was found in SKILL.md.

1
Files scanned
60
Lines analyzed
1
Review items
0
False positives ignored

Risk Factors

⚙️ External commands (2)
Audited by: codex

Jun 30, 2026, 05:11 PM

Static findings were reviewed against SKILL.md and dismissed as false positives. The flagged backticks are Markdown formatting and a Mermaid type list, while the weak cryptography and system reconnaissance labels match ordinary prose. No evidence found of prompt injection, malicious intent, network activity, executable scripts, or command execution.

1
Files scanned
60
Lines analyzed
0
Review items
0
False positives ignored
No confirmed security findings were recorded for this completed audit.
Audited by: codex

Feb 25, 2026, 09:46 AM

Static analysis scanned 0 files with 0 lines and detected 0 potential security issues. This is a prompt-only skill that provides guidance on creating Mermaid.js diagrams. No executable code, network access, filesystem operations, or external commands are present. The skill poses no security risks and is safe for publication.

0
Files scanned
0
Lines analyzed
0
Review items
0
False positives ignored
No confirmed security findings were recorded for this completed audit.
Audited by: claude