Versioned security assessment

Report ID: SA-C751E90A

6/30/2026, 7:30:33 PM

soultrace security assessment v3

Skill Security Certification Report

Audit History
Audit model: codex Historical report
Skill name
soultrace
Version
v3
Maintainer
soultrace-ai
Coverage
1 Files scanned · 172 Lines analyzed
Policy version
Unavailable

Confirmed finding summary

No confirmed security findings

The completed audit recorded no confirmed security findings. This is not proof that the Skill has no side effects.

Installation context

Historical evidence

This report may not describe the currently installable artifact. Open the current Skill page for install guidance.

Open current Skill page

This report does not block or authorize the manifest or ZIP.

Static command execution alerts are false positives from fenced markdown examples and inline code snippets. The real risk is network transmission of personality assessment answers to https://soultrace.app/api/agent, which should be disclosed before use. Weak cryptography and system reconnaissance alerts were not supported by the reviewed lines.

Report position

Historical report

Open audit history before using this report to install.

Audit attestation

Not attestable

The required immutable binding is incomplete.

Human verification

Not verified

No human verification is recorded for this report.

Coverage

1 Files scanned · 172 Lines analyzed

1 item shown for review

Limitations

This report does not claim runtime or sandbox execution and does not prove the absence of side effects.

Evidence chain

Follow the evidence from source binding to the install contract. Available evidence supports verification; it is not a safety guarantee.

  1. Source

    Binding unavailable

  2. Artifact

    Identity incomplete

  3. Audit

    Complete

  4. Install contract

    Open manifest to verify

    Open manifest

Capabilities observed

Observed means this report recorded supporting evidence. Not recorded does not prove that a capability is absent.

Contains scripts

May execute code included with the Skill.

Not recorded by this audit

Network access

May connect to external services.

Observed in 5 evidence locations

Filesystem access

May read or write local files.

Not recorded by this audit

Env variables

May read values from the process environment.

Not recorded by this audit

External commands

May invoke commands or programs outside the Skill.

Observed in 13 evidence locations

Capability review items (1)
Medium
Third-Party Personality Data Submission
TRUE_POSITIVE: The skill instructs agents to send user assessment answers to the SoulTrace API and to accumulate all prior answers with each request. These answers can reveal personality traits and should be treated as personal data sent to an external service.
The endpoint and workflow are explicitly documented, and the skill requires sending accumulated answers to the remote API. The risk is privacy exposure, not evidence of malicious exfiltration.

Risk findings

Confirmed security concerns are separated from items that still need review.

No confirmed security findings were recorded for this completed audit.

Expert evidence

Immutable subject identity, scanner metadata, dismissed matches, and source-level evidence.

Artifact subject

Marketplace commit
Unavailable
Content hash
Unavailable
Tree hash
Unavailable
Skill path
Unavailable
Audit payload hash
Unavailable

Analysis metadata

Audit model: codex

Analysis state: Complete

Scope is limited to the recorded files, lines, methods, and evidence. No runtime or sandbox execution is claimed.

Static false positives ignored (3)
Low
Markdown Command Examples Flagged As Execution
FALSE_POSITIVE: The Ruby or shell backtick detections correspond to fenced markdown blocks, inline JSON examples, and API response examples. No executable script file, install hook, or hidden runtime command was found in the reviewed skill.
The referenced lines are markdown documentation and examples, not code that runs automatically. The skill can still cause network requests when an agent follows the documented API flow.
Low
Weak Cryptography Alert Not Supported
FALSE_POSITIVE: The flagged lines describe a psychological model and answer collection behavior. No MD5, SHA1, DES, RC4, or other weak cryptographic algorithm use was found on those lines.
Direct review of the flagged lines shows personality-assessment text, not cryptographic operations. The finding appears to be a keyword collision.
Low
System Reconnaissance Alert Not Supported
FALSE_POSITIVE: The flagged line is an HTTP error table entry for status 400. It does not request host, user, process, environment, or network interface information.
The line only documents an invalid request response. No system enumeration behavior is present in the reviewed file.

Verify and export

The manifest and lockfile bind install artifacts to cryptographic hashes. This integrity claim is separate from the security assessment.

Audit attestation: not_attestable