Audit History
architecture-patterns - 9 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v9 Latest | Jul 7, 2026, 07:29 AM | No confirmed findings | 0 | No capability change |
| v8 | Jul 7, 2026, 07:29 AM | No confirmed findings | 0 | External commandsEnv variables |
| v7 | Jun 30, 2026, 09:50 PM | No confirmed findings | 0 | No capability change |
| v6 | Jun 30, 2026, 09:50 PM | No confirmed findings | 0 | No capability change |
| v5 | Jan 21, 2026, 06:52 PM | No confirmed findings | 0 | External commandsEnv variables |
| v4 | Jan 17, 2026, 07:13 AM | No confirmed findings | 0 | No capability change |
| v3 | Jan 17, 2026, 07:13 AM | No confirmed findings | 0 | External commandsEnv variables |
| v2 | Jan 4, 2026, 04:44 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 4, 2026, 04:44 PM | No confirmed findings | 0 | Baseline |
Jul 7, 2026, 07:29 AM
Static command, secret, and reconnaissance findings are false positives from Markdown fences and illustrative Python architecture examples. No evidence found of prompt injection, active command execution, real secret access, data exfiltration, or host reconnaissance in SKILL.md.
Risk Factors
⚙️ External commands (7)
🔑 Env variables (2)
Jul 7, 2026, 07:29 AM
Static command, secret, and reconnaissance findings are false positives from Markdown fences and illustrative Python architecture examples. No evidence found of prompt injection, active command execution, real secret access, data exfiltration, or host reconnaissance in SKILL.md.
Risk Factors
⚙️ External commands (7)
🔑 Env variables (2)
Jun 30, 2026, 09:50 PM
Static analysis reported 29 potential issues in SKILL.md, including external command, environment access, weak cryptography, and reconnaissance patterns. Review found these are false positives from Markdown code fences, architecture vocabulary, parameterized SQL examples, and illustrative API-key dependency injection. No prompt injection, data exfiltration, executable installer, network beacon, or malicious intent was found.
Static false positives ignored (3)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Jun 30, 2026, 09:50 PM
Static analysis reported 29 potential issues in SKILL.md, including external command, environment access, weak cryptography, and reconnaissance patterns. Review found these are false positives from Markdown code fences, architecture vocabulary, parameterized SQL examples, and illustrative API-key dependency injection. No prompt injection, data exfiltration, executable installer, network beacon, or malicious intent was found.
Static false positives ignored (3)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Jan 21, 2026, 06:52 PM
All 43 static analysis findings are false positives from educational code examples in documentation. The skill teaches software architecture patterns through Python examples showing Clean Architecture, Hexagonal Architecture, and Domain-Driven Design. No executable code, network access, or security vulnerabilities present.
Jan 17, 2026, 07:13 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
⚙️ External commands (7)
🔑 Env variables (3)
Detected Patterns
Jan 17, 2026, 07:13 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
⚙️ External commands (7)
🔑 Env variables (3)
Detected Patterns
Jan 4, 2026, 04:44 PM
The skill contains only documentation and code examples with no executable functionality, file access, network calls, or system interactions. It's purely educational content.
Jan 4, 2026, 04:44 PM
The skill contains only documentation and code examples with no executable functionality, file access, network calls, or system interactions. It's purely educational content.