Audit History
software-architect - 4 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v4 Latest | Jul 24, 2026, 12:09 AM | 1 confirmed | 0 | No capability change |
| v3 | Jul 15, 2026, 03:48 PM | No confirmed findings | 0 | No capability change |
| v2 | Jul 15, 2026, 03:48 PM | No confirmed findings | 0 | No capability change |
| v1 | Jul 15, 2026, 03:48 PM | No confirmed findings | 0 | Baseline |
Jul 24, 2026, 12:09 AM
All 18 static findings are false positives caused by Markdown backticks, Mermaid diagrams, and high entropy in Chinese text. A separate medium-risk issue remains because the skill requests broad terminal, web, file-write, code-execution, and delegation access without approval boundaries. No prompt injection, obfuscation, or malicious commands were found.
Confirmed security concerns (1)
Risk Factors
Jul 15, 2026, 03:48 PM
All 18 static findings are false positives. The blocker hits are C4 Mermaid diagram declarations, while the command hits are Markdown fences or inline code formatting. Both entropy alerts refer to readable UTF-8 documentation with Chinese text, tables, and diagram characters; no executable or obfuscated payload was found.
Risk Factors
Jul 15, 2026, 03:48 PM
All 18 static findings are false positives. The blocker hits are C4 Mermaid diagram declarations, while the command hits are Markdown fences or inline code formatting. Both entropy alerts refer to readable UTF-8 documentation with Chinese text, tables, and diagram characters; no executable or obfuscated payload was found.
Risk Factors
Jul 15, 2026, 03:48 PM
All 18 static findings are false positives. The blocker hits are C4 Mermaid diagram declarations, while the command hits are Markdown fences or inline code formatting. Both entropy alerts refer to readable UTF-8 documentation with Chinese text, tables, and diagram characters; no executable or obfuscated payload was found.