Audit History
e2e-testing-patterns - 9 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v9 Latest | Jul 7, 2026, 07:43 AM | No confirmed findings | 0 | No capability change |
| v8 | Jul 7, 2026, 07:43 AM | No confirmed findings | 0 | No capability change |
| v7 | Jul 1, 2026, 12:22 AM | No confirmed findings | 3 | No capability change |
| v6 | Jul 1, 2026, 12:22 AM | No confirmed findings | 3 | External commandsNetwork accessEnv variables |
| v5 | Jan 21, 2026, 07:18 PM | No confirmed findings | 0 | Network accessExternal commandsEnv variables |
| v4 | Jan 17, 2026, 08:37 AM | No confirmed findings | 0 | No capability change |
| v3 | Jan 17, 2026, 08:37 AM | No confirmed findings | 0 | Network accessExternal commandsEnv variables |
| v2 | Jan 4, 2026, 05:09 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 4, 2026, 05:09 PM | No confirmed findings | 0 | Baseline |
Jul 7, 2026, 07:43 AM
Static findings were reviewed against SKILL.md and appear to be false positives from Markdown fences, TypeScript examples, local test URLs, and standard CI variables. No prompt injection, data exfiltration intent, unauthorized external command execution, or malicious network behavior was found.
Risk Factors
⚙️ External commands (30)
🌐 Network access (4)
🔑 Env variables (8)
Jul 7, 2026, 07:43 AM
Static findings were reviewed against SKILL.md and appear to be false positives from Markdown fences, TypeScript examples, local test URLs, and standard CI variables. No prompt injection, data exfiltration intent, unauthorized external command execution, or malicious network behavior was found.
Risk Factors
⚙️ External commands (30)
🌐 Network access (4)
🔑 Env variables (8)
Jul 1, 2026, 12:22 AM
Static analysis flagged command execution, network, environment access, weak crypto, and reconnaissance patterns, but review found them inside Markdown documentation and TypeScript test examples. No prompt injection, malicious intent, credential exfiltration, or executable skill script was found, so the residual risk is low and publication is acceptable with normal review.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (1)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚙️ External commands (14)
🌐 Network access (5)
🔑 Env variables (4)
Detected Patterns
Jul 1, 2026, 12:22 AM
Static analysis flagged command execution, network, environment access, weak crypto, and reconnaissance patterns, but review found them inside Markdown documentation and TypeScript test examples. No prompt injection, malicious intent, credential exfiltration, or executable skill script was found, so the residual risk is low and publication is acceptable with normal review.
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (1)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
⚙️ External commands (14)
🌐 Network access (5)
🔑 Env variables (4)
Detected Patterns
Jan 21, 2026, 07:18 PM
This skill provides educational content for end-to-end testing patterns with Playwright and Cypress. All static findings are false positives: weak crypto detections are from filename patterns, backtick executions are code examples in documentation, environment variable access is legitimate test configuration, and hardcoded URLs are localhost test endpoints. No security risks identified.
Jan 17, 2026, 08:37 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
🌐 Network access (4)
⚙️ External commands (31)
🔑 Env variables (8)
Detected Patterns
Jan 17, 2026, 08:37 AM
AI analysis failed after multiple attempts - MANUAL REVIEW REQUIRED before publishing. This skill cannot be auto-published until reviewed by a human.
Risk Factors
🌐 Network access (4)
⚙️ External commands (31)
🔑 Env variables (8)
Detected Patterns
Jan 4, 2026, 05:09 PM
Pure documentation skill with no executable code. Contains instructional content and code examples for E2E testing patterns. No data theft, exfiltration, or malicious execution capabilities detected.
Jan 4, 2026, 05:09 PM
Pure documentation skill with no executable code. Contains instructional content and code examples for E2E testing patterns. No data theft, exfiltration, or malicious execution capabilities detected.