Audit History
postmortem-writing - 8 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v8 Latest | Jul 8, 2026, 01:11 PM | No confirmed findings | 0 | No capability change |
| v7 | Jul 8, 2026, 01:11 PM | No confirmed findings | 0 | External commands |
| v6 | Jul 1, 2026, 12:10 AM | No confirmed findings | 1 | No capability change |
| v5 | Jul 1, 2026, 12:10 AM | No confirmed findings | 1 | External commands |
| v4 | Jan 17, 2026, 09:13 AM | No confirmed findings | 0 | No capability change |
| v3 | Jan 17, 2026, 09:13 AM | No confirmed findings | 0 | Network accessExternal commands |
| v2 | Jan 5, 2026, 05:06 PM | No confirmed findings | 0 | No capability change |
| v1 | Jan 5, 2026, 05:06 PM | No confirmed findings | 0 | Baseline |
Jul 8, 2026, 01:11 PM
All static findings are false positives caused by Markdown fences, inline code formatting, sample incident analysis text, and passive reference links. No prompt injection, command execution, active network behavior, or data exfiltration intent was found in SKILL.md.
Risk Factors
⚙️ External commands (14)
🌐 Network access (4)
Jul 8, 2026, 01:11 PM
All static findings are false positives caused by Markdown fences, inline code formatting, sample incident analysis text, and passive reference links. No prompt injection, command execution, active network behavior, or data exfiltration intent was found in SKILL.md.
Risk Factors
⚙️ External commands (14)
🌐 Network access (4)
Jul 1, 2026, 12:10 AM
Static analysis reported many high-risk patterns, but review found they occur inside Markdown examples, prose, and incident templates rather than executable code. The only confirmed risk factor is low-risk network exposure from three external reference links; no prompt injection, malicious intent, credential access, or runnable command execution was found.
Capability review items (1)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (3)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
🌐 Network access (3)
Jul 1, 2026, 12:10 AM
Static analysis reported many high-risk patterns, but review found they occur inside Markdown examples, prose, and incident templates rather than executable code. The only confirmed risk factor is low-risk network exposure from three external reference links; no prompt injection, malicious intent, credential access, or runnable command execution was found.
Capability review items (1)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (3)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
🌐 Network access (3)
Jan 17, 2026, 09:13 AM
This is a documentation-only skill containing markdown guides and templates for writing postmortems. No executable code, file access, network calls, or system capabilities are present. All 46 static findings are false positives - the scanner incorrectly flagged SHA-256 hashes, markdown code fences, timestamps, and documentation phrases as security issues.
Risk Factors
🌐 Network access (4)
Jan 17, 2026, 09:13 AM
This is a documentation-only skill containing markdown guides and templates for writing postmortems. No executable code, file access, network calls, or system capabilities are present. All 46 static findings are false positives - the scanner incorrectly flagged SHA-256 hashes, markdown code fences, timestamps, and documentation phrases as security issues.
Risk Factors
🌐 Network access (4)
Jan 5, 2026, 05:06 PM
This is a documentation-only skill containing markdown guides and templates for writing postmortems. No executable code, file access, network calls, or system capabilities are present.
Jan 5, 2026, 05:06 PM
This is a documentation-only skill containing markdown guides and templates for writing postmortems. No executable code, file access, network calls, or system capabilities are present.