Releases: skilltrust/skill-detector
Releases · skilltrust/skill-detector
Release list
v0.10.0
Changelog
- a737dac docs: date the v0.10.0 changelog entry
- bebb19e Merge pull request #28 from skilltrust/feat/sd004-home-variable-credential-paths
- e7c7846 fix(SD-004): final-review fix wave — leftmost-match negation, doc accuracy, quoted-$HOME gap
- f3ebe64 docs: v0.10.0 changelog — SD-004 variable home spellings
- 23f873b test(adversarial): pin the $HOME-spelled credential read and its benign twin
- 0629a24 test(SD-004): pin the documentary damping over the variable spellings
- 10e86bf feat(SD-004): detect credential paths spelled through $HOME
- 8fc81ce Merge pull request #27 from skilltrust/feat/adversarial-standing-gate
- f165a4d test(adversarial): fail closed on an unknown grade and on a mis-tabled gap case
- f778eb1 test(adversarial): pin the hex-blob, relative-upload and markdown-fence suppressions
- 6a3010d docs: both halves of an adversarial fixture must be watched failing
- c8c3310 test(adversarial): correct the URL-skip span note and the known-gap failure wording
- 8970182 test(adversarial): abuse fixtures for the hook and MCP exemptions
- d9a511a test(adversarial): abuse fixtures for SD-008's base64 dampings
- 57be3a3 test(adversarial): make the git-fetch control depend on the veto it names
- b3d3465 test(adversarial): abuse fixtures for SD-003's whole-reference and embedded-dotdot guards
- c186c45 test(adversarial): isolate sd007-git-fetch-then-exfil from the routable-IP fallback
- 223e8d3 test(adversarial): abuse fixtures for SD-007's git-fetch veto and capture-assignment allow
- ea4eab9 test(adversarial): abuse fixtures for SD-002's ZWJ carve-out and its cap
- 2de0fe5 test(adversarial): abuse fixtures for SD-013's documentary and negation dampings
- ca434ed test(adversarial): abuse fixtures for SD-004's four exemptions
- 0ca0a24 test(adversarial): add the known-gap table, seeded with the .pub-named private key
- 936abc9 docs: restore the lead-in sentence for the rule-adding steps
- 295aade docs: make the adversarial fixture the standing rule for suppressions
- 15e6a50 chore: gitignore the superpowers SDD scratch directory
v0.9.0
Changelog
- 658166d chore(release): cut v0.9.0
- 255c887 Merge pull request #26 from skilltrust/sd003-path-traversal-noise
- 29d1a2d docs: correct the metrics claim, and record the mid-word
..rejection - d1dc16c fix(SD-003): refuse a
..embedded in a longer path segment - f57bdb9 docs: name the population behind every SD-003 corpus number
- 38f5846 test(SD-003): pin the split-reference escape in a markdown file
- c3d8654 fix(SD-003): refuse an ambiguous reference region instead of guessing it
- 869472c docs(SD-003): say what the unresolvable-token guard actually does
- 35db059 docs: correct the SD-003 "still flagged" list
- fd414c2 test(SD-003): adversarial fixture for the split-reference escape
- f8fa613 fix(SD-003): judge a whole reference, not a split fragment
- 1944b9c docs: changelog for the SD-003 in-package ../ fix
- d93cf1f test(SD-003): adversarial fixtures for the released ../ shape
- 115d71a fix(SD-003): stop reporting in-package ../ references as traversal
- a22d91b fix(rules): trim all leading sigils, not just one, before resolving
- 4a936b5 fix(rules): close ~-expansion escape in relativeRefStaysInSkill
- b4566df feat(rules): resolve a ../ reference against the file's skill root
- 401fc43 Merge skill.yaml scope root (closes the ADR-0010 gap)
- eef1084 docs: changelog for the skill.yaml scope-root fix
- 4943791 fix(scope): a skill.yaml directory is a skill root too
- ee92628 docs: name the real gate helpers in the development guide
v0.8.0
Changelog
- 8982b68 chore(release): cut v0.8.0
- 695bcb3 Merge skill-root scope (programme item 3)
- 85a703a fix(scope): keep the skill-root arm out of .github/ and .vscode/
- 8bd2edd docs: skill roots widen scope, and your grade may move
- 2f237e1 test(scope): three manifests at three depths, each scoping its own subtree
- 004c60b test(adversarial): skill-root scope attack and control cases
- a70aa4b test(scope): pin raw-layout parity with the two install layouts
- 0e8d971 feat(rules): gate on the skill root as well as the path shape
- 0486ece feat(scanner): discover skill roots and stamp them on each file
- 84789fc feat(model): carry the nearest skill root on FileContext
- d8b8e33 Merge SD-025 Reverse Shell (programme item 4)
- bf449fa fix(rules): SD-025 PAIR line-number fallback; document node/splitfd gaps
- acd5000 docs: CHANGELOG entry for SD-025 reverse shell + checksum move
- 7be1988 test(bench): SD-025 recall tripwire case
- a9e659d test(adversarial): SD-025 attack + control fixtures
- 2e5778d feat(rules): register SD-025 and classify its capability
- d5c8746 feat(rules): add SD-025 reverse shell detection
- 1ae85c0 chore: ignore local dev worktrees
v0.7.0
Changelog
- abb921d docs: stamp v0.7.0
- 24bef2d fix(SD-007): demote only a statement that is nothing but its call (#23)
- 3614cbb fix: engine precision programme, measured (#22)
- 3d37140 fix: cut SD-007 and SD-008 false positives, measured (#21)
- e203244 Merge pull request #18 from skilltrust/fix/agents-scope-and-empty-scan-grade
- abd5008 docs(rules): reattach isInAgentConfigDir doc comment to its function
- 6726563 docs(reporter): reattach VerdictIcon doc comment to its function
- 903428c fix: scan .agents/ and stop grading empty scans
- 3f39c76 ci: run govulncheck (#17)
- 178cc5f docs(contributing): require DCO sign-off + relicensing grant
- 913f376 Merge pull request #16 from skilltrust/feat/hide-empty-quality-axis
- 5367525 feat(reporter): hide the quality axis row while no rule drives it
v0.6.0
Changelog
- 7d1a074 Merge pull request #15 from skilltrust/release/v0.6.0-changelog
- 1b5a29e docs(changelog): stamp v0.6.0
- eac57a9 Merge pull request #14 from skilltrust/fix/engine-review-cleanup
- 9452ddc Merge pull request #13 from skilltrust/fix/triage-verdict-collision
- b1d4cca Merge pull request #11 from skilltrust/fix/delta-line-shift-churn
- 35ce2ec Merge pull request #12 from skilltrust/docs/exit-code-recipe
- f583d2b Merge remote-tracking branch 'origin/fix/delta-line-shift-churn' into fix/engine-review-cleanup
- 8a20ef7 fix(engine-review): capability staleness, registry duplication, schema pin
- 44f9786 fix(delta): pair line-shifted findings instead of reporting churn
- 68a791d fix(triage): match verdicts per finding, not by {RuleID, Line} alone
- 33db6e4 docs(readme): document the warn-without-failing CI recipe for exit 1
v0.5.0
Changelog
- cc13cb0 fix(rules): SD-001 scans only shell-tagged or untagged fences — JS template literals no longer flagged
- 0a4bcba docs(changelog): stamp v0.5.0
- 8c99b80 Merge pull request #10 from skilltrust/worktree-detection-correctness-fixes
- 7706130 fix: final review wave — damping veto precision, warning counter scope, corpus gitignore; rename SD-018
- 5b70ce8 docs: sync rule counts, exit codes, and v0.3 behavior changes
- fbd5f9b test(cmd): lock newRegistry to rules.DefaultRegistry via checksum parity
- 04c6153 fix(cli): error on unknown --fail-on-axis axis; exit 3 for tool errors; accept .skill-detector.yml
- bae89fc fix(scanner): match gitignored dir nodes with both dirname and dirname/ syntax
- 51245a8 fix(rules): close shape-only bypass of SD-004/SD-013 documentary damping
- aba4515 feat(scanner): warn when gitignore skips agent config paths; schema 1.4
- f14406e fix(rules): stop flagging prohibition guidance (SD-004/SD-013) and CLAUDE_* hook vars (SD-020) as Critical
- a9891a3 fix(rules): detect Unicode Tags block and bidi overrides; one invisible-char finding per line
- 4113423 feat(rules): SD-001 scans bash fences in markdown and zsh/extensionless scripts
- 1b30c4b fix(rules): SD-002 covers .claude/commands, agents, and skill content files
- 08e7c2f fix(rules): close .cursorrules/.windsurfrules dispatch gap, fix IsInstructionFile path-boundary bug
- 6671e0d feat: multi-harness instruction files, config dirs, and MCP config locations
- 70e1b37 feat(scanner): discover script and extensionless files inside agent config dirs
- 2186171 feat(rules): SD-024 flags MCP servers that auto-install registry packages (npx/uvx/pipx/bunx)
- 0bed44e fix(rules): Bash/PowerShell wildcard syntax incl. colon and no-space forms; SD-018 redundant-deny reword; SD-023 downgraded to Medium
- a03e480 fix(rules): parse real nested Claude Code hooks schema in SD-019/SD-020
- 9d1ec3a chore: add corpus baseline runner
- 3e6c6bb chore(ci): bump GitHub Actions to current majors
- 45fbaa5 docs(changelog): backfill v0.3.2, v0.3.3 and v0.4.0
- 1eb4005 docs(dev-guide): correct the registry-checksum note
- 23beb5e docs(dev-guide): refresh for v0.3.1
- 9a6d925 docs: keep engineering knowledge local, publish only the contributor guide
v0.4.0
v0.3.3
v0.3.2
Changelog
- 7dc82d2 fix(release): point GoReleaser at skilltrust org (post-transfer)
- 77081d2 docs(readme): add SkillTrust engine badge (FR34)
- 808b587 Merge SD-022 DNS exfiltration detection
- f9c21a4 feat(rules): SD-022 DNS exfiltration / tunneling detection
- 36ff5e8 test(bench): per-commit recall tripwire on curated malicious slice
- 0ecfb96 docs: rename references skillmoss-go → skilltrust
- 8f7eaa5 docs: reorganize per multi-repo doc plan
v0.3.1
Changelog
- f07b20b release: v0.3.1 — switch findingKey to hash/fnv (semantic correctness)