Audit History
gitops-workflow - 9 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v9 Latest | Jul 9, 2026, 12:34 PM | No confirmed findings | 7 | No capability change |
| v8 | Jul 9, 2026, 12:34 PM | No confirmed findings | 7 | No capability change |
| v7 | Jul 7, 2026, 07:06 AM | No confirmed findings | 7 | No capability change |
| v6 | Jul 1, 2026, 12:50 AM | No confirmed findings | 5 | No capability change |
| v5 | Jul 1, 2026, 12:50 AM | No confirmed findings | 5 | No capability change |
| v4 | Jan 17, 2026, 09:03 AM | No confirmed findings | 0 | No capability change |
| v3 | Jan 17, 2026, 09:03 AM | No confirmed findings | 0 | External commandsNetwork access |
| v2 | Jan 4, 2026, 04:25 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 4, 2026, 04:25 PM | No confirmed findings | 0 | Baseline |
Jul 9, 2026, 12:34 PM
Most static findings are Markdown examples, YAML manifests, or expected public URLs. The main risk is the Flux installer that pipes network-fetched shell code into sudo. Some kubectl, argocd, flux, and kubeseal examples can change clusters or expose secrets.
Capability review items (7)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (14)
โ๏ธ External commands (34)
Jul 9, 2026, 12:34 PM
Most static findings are Markdown examples, YAML manifests, or expected public URLs. The main risk is the Flux installer that pipes network-fetched shell code into sudo. Some kubectl, argocd, flux, and kubeseal examples can change clusters or expose secrets.
Capability review items (7)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (14)
โ๏ธ External commands (34)
Jul 7, 2026, 07:06 AM
Most static findings are Markdown documentation examples for GitOps commands, YAML manifests, or expected public URLs. The main confirmed risk is the Flux install command that pipes network-fetched shell code into sudo, with additional operational risk from cluster-changing kubectl, argocd, flux, and kubeseal examples.
Capability review items (7)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
๐ Network access (14)
โ๏ธ External commands (34)
Jul 1, 2026, 12:50 AM
Static analysis reported many external command, network, sudo, and weak-crypto patterns. Review found these are Markdown GitOps examples, not executable skill code, with no evidence of prompt injection, malware, or data exfiltration. The skill still needs a publication warning because some examples can modify Kubernetes clusters, pass credentials on command lines, or run a network installer with sudo.
Capability review items (5)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
โ๏ธ External commands (7)
Detected Patterns
Jul 1, 2026, 12:50 AM
Static analysis reported many external command, network, sudo, and weak-crypto patterns. Review found these are Markdown GitOps examples, not executable skill code, with no evidence of prompt injection, malware, or data exfiltration. The skill still needs a publication warning because some examples can modify Kubernetes clusters, pass credentials on command lines, or run a network installer with sudo.
Capability review items (5)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (2)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
โ๏ธ External commands (7)
Detected Patterns
Jan 17, 2026, 09:03 AM
Documentation-only skill containing markdown guides and YAML examples for GitOps workflows. Static analyzer flagged markdown code blocks and Lua syntax as security patterns - all are false positives. No executable code, no network calls, no file system access, no external data processing. Safe for marketplace publication.
Risk Factors
โ๏ธ External commands (72)
๐ Network access (14)
Jan 17, 2026, 09:03 AM
Documentation-only skill containing markdown guides and YAML examples for GitOps workflows. Static analyzer flagged markdown code blocks and Lua syntax as security patterns - all are false positives. No executable code, no network calls, no file system access, no external data processing. Safe for marketplace publication.
Risk Factors
โ๏ธ External commands (72)
๐ Network access (14)
Jan 4, 2026, 04:25 PM
Documentation-only skill with no executable code. Contains only static guides, YAML examples, and best practices for GitOps workflows. No security risks identified.
Jan 4, 2026, 04:25 PM
Documentation-only skill with no executable code. Contains only static guides, YAML examples, and best practices for GitOps workflows. No security risks identified.