📦

Audit History

changelog-automation - 5 audits

Audit version 5

Latest Safe

Jan 21, 2026, 06:55 PM

This skill contains documentation and configuration templates for changelog automation tools. All static findings are false positives: network URLs are documentation references to keepachangelog.com and semver.org, backtick patterns are code examples in markdown format, and env_access references are configuration samples for GitHub Actions workflows. No executable code or security risks detected.

2
Files scanned
1,378
Lines analyzed
0
findings
claude
Audited by
No security issues found

Audit version 4

Medium Risk

Jan 17, 2026, 07:47 AM

AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.

2
Files scanned
730
Lines analyzed
3
findings
claude
Audited by
No security issues found

Detected Patterns

Hardcoded URLWeak cryptographic algorithmSystem reconnaissanceRuby/shell backtick executionGit platform tokens[HEURISTIC] DANGEROUS COMBINATION: Code execution + Network + Credential access

Audit version 3

Medium Risk

Jan 17, 2026, 07:47 AM

AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.

2
Files scanned
730
Lines analyzed
3
findings
claude
Audited by
No security issues found

Detected Patterns

Hardcoded URLWeak cryptographic algorithmSystem reconnaissanceRuby/shell backtick executionGit platform tokens[HEURISTIC] DANGEROUS COMBINATION: Code execution + Network + Credential access

Audit version 2

Safe

Jan 4, 2026, 04:51 PM

Pure documentation skill containing only markdown templates and configuration examples. No executable code, no file access, no network calls, no command execution. The skill provides patterns that users apply manually to their own projects.

4
Files scanned
1,108
Lines analyzed
0
findings
claude
Audited by
No security issues found

Audit version 1

Safe

Jan 4, 2026, 04:51 PM

Pure documentation skill containing only markdown templates and configuration examples. No executable code, no file access, no network calls, no command execution. The skill provides patterns that users apply manually to their own projects.

4
Files scanned
1,108
Lines analyzed
0
findings
claude
Audited by
No security issues found