Audit History
distributed-tracing - 8 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v8 Latest | Jul 7, 2026, 07:35 AM | 2 confirmed | 0 | No capability change |
| v7 | Jul 7, 2026, 07:35 AM | 2 confirmed | 0 | Contains scripts |
| v6 | Jul 1, 2026, 12:15 AM | 2 confirmed | 1 | Contains scripts |
| v5 | Jan 21, 2026, 07:17 PM | No confirmed findings | 0 | No capability change |
| v4 | Jan 17, 2026, 08:29 AM | No confirmed findings | 0 | No capability change |
| v3 | Jan 17, 2026, 08:29 AM | No confirmed findings | 0 | Network accessContains scriptsExternal commands |
| v2 | Jan 4, 2026, 05:08 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 4, 2026, 05:08 PM | No confirmed findings | 0 | Baseline |
Jul 7, 2026, 07:35 AM
The static findings are mostly false positives caused by Markdown code fences, language examples, and visible example URLs in SKILL.md. I found no prompt injection, covert command execution, credential collection, or data exfiltration intent. Two production safety issues remain around sensitive trace metadata and unpinned container images.
Confirmed security concerns (2)
Risk Factors
⚡ Contains scripts (1)
⚙️ External commands (40)
🌐 Network access (9)
Jul 7, 2026, 07:35 AM
The static findings are mostly false positives caused by Markdown code fences, language examples, and visible example URLs in SKILL.md. I found no prompt injection, covert command execution, credential collection, or data exfiltration intent. Two production safety issues remain around sensitive trace metadata and unpinned container images.
Confirmed security concerns (2)
Risk Factors
⚡ Contains scripts (1)
⚙️ External commands (40)
🌐 Network access (9)
Jul 1, 2026, 12:15 AM
Static analysis reported 53 issues, but the weak-cryptography, dynamic-import, and shell-backtick alerts are false positives from Markdown front matter, Go import syntax, code fences, and inline references. Confirmed risk is medium because users may copy Kubernetes deployment commands and tracing examples that contact remote or internal endpoints and may store sensitive trace metadata. No evidence of malware, prompt injection, credential exfiltration, or hidden executable code was found.
Confirmed security concerns (2)
Capability review items (1)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚙️ External commands (1)
🌐 Network access (7)
Detected Patterns
Jan 21, 2026, 07:17 PM
Static analyzer detected 65 potential security patterns including C2 keywords, weak crypto, and external commands. Manual review confirms all findings are false positives - patterns appear in legitimate documentation and code examples for distributed tracing infrastructure deployment. No security risks identified.
Risk Factors
⚡ Contains scripts (1)
🌐 Network access (9)
⚙️ External commands (40)
Jan 17, 2026, 08:29 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
🌐 Network access (9)
⚡ Contains scripts (1)
⚙️ External commands (40)
Detected Patterns
Jan 17, 2026, 08:29 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
🌐 Network access (9)
⚡ Contains scripts (1)
⚙️ External commands (40)
Detected Patterns
Jan 4, 2026, 05:08 PM
Documentation-only skill with no executable code. Contains only markdown guidance, code examples, and configuration templates for users to copy into their own applications. Zero attack surface - no data access, no network calls, no file operations, no command execution.
Jan 4, 2026, 05:08 PM
Documentation-only skill with no executable code. Contains only markdown guidance, code examples, and configuration templates for users to copy into their own applications. Zero attack surface - no data access, no network calls, no file operations, no command execution.