Skip to content

Releases: skilltrust/skill-detector

v0.10.0

Choose a tag to compare

@github-actions github-actions released this 30 Aug 21:21

Changelog

  • a737dac docs: date the v0.10.0 changelog entry
  • bebb19e Merge pull request #28 from skilltrust/feat/sd004-home-variable-credential-paths
  • e7c7846 fix(SD-004): final-review fix wave — leftmost-match negation, doc accuracy, quoted-$HOME gap
  • f3ebe64 docs: v0.10.0 changelog — SD-004 variable home spellings
  • 23f873b test(adversarial): pin the $HOME-spelled credential read and its benign twin
  • 0629a24 test(SD-004): pin the documentary damping over the variable spellings
  • 10e86bf feat(SD-004): detect credential paths spelled through $HOME
  • 8fc81ce Merge pull request #27 from skilltrust/feat/adversarial-standing-gate
  • f165a4d test(adversarial): fail closed on an unknown grade and on a mis-tabled gap case
  • f778eb1 test(adversarial): pin the hex-blob, relative-upload and markdown-fence suppressions
  • 6a3010d docs: both halves of an adversarial fixture must be watched failing
  • c8c3310 test(adversarial): correct the URL-skip span note and the known-gap failure wording
  • 8970182 test(adversarial): abuse fixtures for the hook and MCP exemptions
  • d9a511a test(adversarial): abuse fixtures for SD-008's base64 dampings
  • 57be3a3 test(adversarial): make the git-fetch control depend on the veto it names
  • b3d3465 test(adversarial): abuse fixtures for SD-003's whole-reference and embedded-dotdot guards
  • c186c45 test(adversarial): isolate sd007-git-fetch-then-exfil from the routable-IP fallback
  • 223e8d3 test(adversarial): abuse fixtures for SD-007's git-fetch veto and capture-assignment allow
  • ea4eab9 test(adversarial): abuse fixtures for SD-002's ZWJ carve-out and its cap
  • 2de0fe5 test(adversarial): abuse fixtures for SD-013's documentary and negation dampings
  • ca434ed test(adversarial): abuse fixtures for SD-004's four exemptions
  • 0ca0a24 test(adversarial): add the known-gap table, seeded with the .pub-named private key
  • 936abc9 docs: restore the lead-in sentence for the rule-adding steps
  • 295aade docs: make the adversarial fixture the standing rule for suppressions
  • 15e6a50 chore: gitignore the superpowers SDD scratch directory

v0.9.0

Choose a tag to compare

@github-actions github-actions released this 28 Aug 17:51

Changelog

  • 658166d chore(release): cut v0.9.0
  • 255c887 Merge pull request #26 from skilltrust/sd003-path-traversal-noise
  • 29d1a2d docs: correct the metrics claim, and record the mid-word .. rejection
  • d1dc16c fix(SD-003): refuse a .. embedded in a longer path segment
  • f57bdb9 docs: name the population behind every SD-003 corpus number
  • 38f5846 test(SD-003): pin the split-reference escape in a markdown file
  • c3d8654 fix(SD-003): refuse an ambiguous reference region instead of guessing it
  • 869472c docs(SD-003): say what the unresolvable-token guard actually does
  • 35db059 docs: correct the SD-003 "still flagged" list
  • fd414c2 test(SD-003): adversarial fixture for the split-reference escape
  • f8fa613 fix(SD-003): judge a whole reference, not a split fragment
  • 1944b9c docs: changelog for the SD-003 in-package ../ fix
  • d93cf1f test(SD-003): adversarial fixtures for the released ../ shape
  • 115d71a fix(SD-003): stop reporting in-package ../ references as traversal
  • a22d91b fix(rules): trim all leading sigils, not just one, before resolving
  • 4a936b5 fix(rules): close ~-expansion escape in relativeRefStaysInSkill
  • b4566df feat(rules): resolve a ../ reference against the file's skill root
  • 401fc43 Merge skill.yaml scope root (closes the ADR-0010 gap)
  • eef1084 docs: changelog for the skill.yaml scope-root fix
  • 4943791 fix(scope): a skill.yaml directory is a skill root too
  • ee92628 docs: name the real gate helpers in the development guide

v0.8.0

Choose a tag to compare

@github-actions github-actions released this 27 Aug 21:00

Changelog

  • 8982b68 chore(release): cut v0.8.0
  • 695bcb3 Merge skill-root scope (programme item 3)
  • 85a703a fix(scope): keep the skill-root arm out of .github/ and .vscode/
  • 8bd2edd docs: skill roots widen scope, and your grade may move
  • 2f237e1 test(scope): three manifests at three depths, each scoping its own subtree
  • 004c60b test(adversarial): skill-root scope attack and control cases
  • a70aa4b test(scope): pin raw-layout parity with the two install layouts
  • 0e8d971 feat(rules): gate on the skill root as well as the path shape
  • 0486ece feat(scanner): discover skill roots and stamp them on each file
  • 84789fc feat(model): carry the nearest skill root on FileContext
  • d8b8e33 Merge SD-025 Reverse Shell (programme item 4)
  • bf449fa fix(rules): SD-025 PAIR line-number fallback; document node/splitfd gaps
  • acd5000 docs: CHANGELOG entry for SD-025 reverse shell + checksum move
  • 7be1988 test(bench): SD-025 recall tripwire case
  • a9e659d test(adversarial): SD-025 attack + control fixtures
  • 2e5778d feat(rules): register SD-025 and classify its capability
  • d5c8746 feat(rules): add SD-025 reverse shell detection
  • 1ae85c0 chore: ignore local dev worktrees

v0.7.0

Choose a tag to compare

@github-actions github-actions released this 26 Aug 18:38

Changelog

  • abb921d docs: stamp v0.7.0
  • 24bef2d fix(SD-007): demote only a statement that is nothing but its call (#23)
  • 3614cbb fix: engine precision programme, measured (#22)
  • 3d37140 fix: cut SD-007 and SD-008 false positives, measured (#21)
  • e203244 Merge pull request #18 from skilltrust/fix/agents-scope-and-empty-scan-grade
  • abd5008 docs(rules): reattach isInAgentConfigDir doc comment to its function
  • 6726563 docs(reporter): reattach VerdictIcon doc comment to its function
  • 903428c fix: scan .agents/ and stop grading empty scans
  • 3f39c76 ci: run govulncheck (#17)
  • 178cc5f docs(contributing): require DCO sign-off + relicensing grant
  • 913f376 Merge pull request #16 from skilltrust/feat/hide-empty-quality-axis
  • 5367525 feat(reporter): hide the quality axis row while no rule drives it

v0.6.0

Choose a tag to compare

@github-actions github-actions released this 14 Aug 16:32
7d1a074

Changelog

  • 7d1a074 Merge pull request #15 from skilltrust/release/v0.6.0-changelog
  • 1b5a29e docs(changelog): stamp v0.6.0
  • eac57a9 Merge pull request #14 from skilltrust/fix/engine-review-cleanup
  • 9452ddc Merge pull request #13 from skilltrust/fix/triage-verdict-collision
  • b1d4cca Merge pull request #11 from skilltrust/fix/delta-line-shift-churn
  • 35ce2ec Merge pull request #12 from skilltrust/docs/exit-code-recipe
  • f583d2b Merge remote-tracking branch 'origin/fix/delta-line-shift-churn' into fix/engine-review-cleanup
  • 8a20ef7 fix(engine-review): capability staleness, registry duplication, schema pin
  • 44f9786 fix(delta): pair line-shifted findings instead of reporting churn
  • 68a791d fix(triage): match verdicts per finding, not by {RuleID, Line} alone
  • 33db6e4 docs(readme): document the warn-without-failing CI recipe for exit 1

v0.5.0

Choose a tag to compare

@github-actions github-actions released this 05 Aug 17:19

Changelog

  • cc13cb0 fix(rules): SD-001 scans only shell-tagged or untagged fences — JS template literals no longer flagged
  • 0a4bcba docs(changelog): stamp v0.5.0
  • 8c99b80 Merge pull request #10 from skilltrust/worktree-detection-correctness-fixes
  • 7706130 fix: final review wave — damping veto precision, warning counter scope, corpus gitignore; rename SD-018
  • 5b70ce8 docs: sync rule counts, exit codes, and v0.3 behavior changes
  • fbd5f9b test(cmd): lock newRegistry to rules.DefaultRegistry via checksum parity
  • 04c6153 fix(cli): error on unknown --fail-on-axis axis; exit 3 for tool errors; accept .skill-detector.yml
  • bae89fc fix(scanner): match gitignored dir nodes with both dirname and dirname/ syntax
  • 51245a8 fix(rules): close shape-only bypass of SD-004/SD-013 documentary damping
  • aba4515 feat(scanner): warn when gitignore skips agent config paths; schema 1.4
  • f14406e fix(rules): stop flagging prohibition guidance (SD-004/SD-013) and CLAUDE_* hook vars (SD-020) as Critical
  • a9891a3 fix(rules): detect Unicode Tags block and bidi overrides; one invisible-char finding per line
  • 4113423 feat(rules): SD-001 scans bash fences in markdown and zsh/extensionless scripts
  • 1b30c4b fix(rules): SD-002 covers .claude/commands, agents, and skill content files
  • 08e7c2f fix(rules): close .cursorrules/.windsurfrules dispatch gap, fix IsInstructionFile path-boundary bug
  • 6671e0d feat: multi-harness instruction files, config dirs, and MCP config locations
  • 70e1b37 feat(scanner): discover script and extensionless files inside agent config dirs
  • 2186171 feat(rules): SD-024 flags MCP servers that auto-install registry packages (npx/uvx/pipx/bunx)
  • 0bed44e fix(rules): Bash/PowerShell wildcard syntax incl. colon and no-space forms; SD-018 redundant-deny reword; SD-023 downgraded to Medium
  • a03e480 fix(rules): parse real nested Claude Code hooks schema in SD-019/SD-020
  • 9d1ec3a chore: add corpus baseline runner
  • 3e6c6bb chore(ci): bump GitHub Actions to current majors
  • 45fbaa5 docs(changelog): backfill v0.3.2, v0.3.3 and v0.4.0
  • 1eb4005 docs(dev-guide): correct the registry-checksum note
  • 23beb5e docs(dev-guide): refresh for v0.3.1
  • 9a6d925 docs: keep engineering knowledge local, publish only the contributor guide

v0.4.0

Choose a tag to compare

@github-actions github-actions released this 29 May 13:36
2a0320a

Changelog

  • 2a0320a Merge pull request #7 from skilltrust/feat/triage-verifier-engine
  • 3767dce Merge pull request #6 from skilltrust/docs/remove-shipped-plans
  • 674cc16 docs: remove shipped SP1/SP1.1 plans, keep specs

v0.3.3

Choose a tag to compare

@github-actions github-actions released this 25 May 17:23

Changelog

  • 93d22c5 test(rules): add SD-023 fixtures (force-add; .claude/ is gitignored)
  • e619b7d feat(rules): SD-023 flag unrestricted permission grant ("*" in allow)

v0.3.2

Choose a tag to compare

@github-actions github-actions released this 25 May 12:21

Changelog

  • 7dc82d2 fix(release): point GoReleaser at skilltrust org (post-transfer)
  • 77081d2 docs(readme): add SkillTrust engine badge (FR34)
  • 808b587 Merge SD-022 DNS exfiltration detection
  • f9c21a4 feat(rules): SD-022 DNS exfiltration / tunneling detection
  • 36ff5e8 test(bench): per-commit recall tripwire on curated malicious slice
  • 0ecfb96 docs: rename references skillmoss-go → skilltrust
  • 8f7eaa5 docs: reorganize per multi-repo doc plan

v0.3.1

Choose a tag to compare

@github-actions github-actions released this 21 May 18:35

Changelog

  • f07b20b release: v0.3.1 — switch findingKey to hash/fnv (semantic correctness)