Laporan audit skill

agent-decision-receipts Laporan audit.

Mint a tamper-evident, post-quantum-signed receipt for a consequential agent action (deploy, delete, pay, grant-access, model decision) so it can be verified later from the certificate alone. Use when an autonomous agent takes a side-effecting action that may need to be proven later, or when satisfying EU AI Act Article 12 record-keeping. Three decisions: whether an action needs a receipt, minting it, verifying it. Signing is delegated to the open-source OpenAgentOntology package. Not after-the-fact log analysis; not a hosted notary; not a legal opinion.

Eksperimental · TinjauPerlu ditinjauDihasilkan 22 Agu 2026Audit metadata heuristik
83
Audit
74
Kepercayaan
91
Kualitas
69
Keamanan
100
Maintain
92
Pasang

Trust Score OpenAgentSkill

74
Shortlist kuat

Trust Score OpenAgentSkill

The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.

Adopsi GitHub

Lulus

100

25K star GitHub

Aktivitas star/fork

Lulus

97

25K star dan 3.5K fork; aktivitas issue tidak tersedia dalam metadata saat ini

Pemeliharaan terbaru

Lulus

100

Diperbarui hari ini

Kejelasan lisensi

Lulus

86

MIT

Kelengkapan README/SKILL.md

Lulus

86

Metadata memuat konteks penggunaan dan alur kerja yang cukup

Risiko dependensi/runtime

Gagal

28

command execution surface, credential or environment access

Ketersediaan pemasangan

Lulus

92

npx skills add alirezarezvani/claude-skills --skill agent-decision-receipts

Keamanan perintah pemasangan

Lulus

92

Jalur pemasangan paket atau runtime standar

Cakupan izin

Gagal

18

secrets or environment access, shell or command execution

Bukti repositori

Lulus

86

https://github.com/alirezarezvani/claude-skills/tree/main/.gemini/skills/agent-decision-receipts

Status peninjauan

Info

66

Data tinjauan AI tersedia

Hasil terbukti Agent

Info

54

Belum ada data hasil Agent

Pemeriksaan

Tinjauan pemasangan dan adopsi

8 Lulus · 13 Perlu ditinjau

Jalur pemasangan

92

Lulus

npx skills add alirezarezvani/claude-skills --skill agent-decision-receipts

Repositori

88

Lulus

https://github.com/alirezarezvani/claude-skills/tree/main/.gemini/skills/agent-decision-receipts

Lisensi

86

Lulus

MIT

Pemeliharaan

100

Lulus

Diperbarui hari ini

Tinjauan AI

55

Periksa

The skill relies on an external package (openagentontology) for cryptographic operations; while this is clearly documented, the package's security posture is not independently verified by this review.

Kelengkapan README/SKILL.md

86

Lulus

Usable description available

Risiko dependensi

28

Perbaiki

command execution surface, credential or environment access

Keamanan perintah pemasangan

92

Lulus

Jalur pemasangan paket atau runtime standar

Cakupan izin

18

Perbaiki

secrets or environment access, shell or command execution

Aktivitas star/fork

97

Lulus

25K star dan 3.5K fork; aktivitas issue tidak tersedia dalam metadata saat ini

Adopsi

88

Lulus

25K star GitHub

Financial decision safety

58

Periksa

Research-only use: do not treat output as financial advice or execute a position without human approval.

Peringatan

  • Dependency or permission surface needs review
  • Permission surface may require sandboxing
  • Financial research output is not financial advice; require human review before any live investment decision
  • The skill relies on an external package (openagentontology) for cryptographic operations; while this is clearly documented, the package's security posture is not independently verified by this review.
  • Financial research output is not financial advice; require human review before any live investment decision.
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, shell or command execution
  • Dependency/runtime risk: command execution surface, credential or environment access
  • Permission surface: secrets or environment access, shell or command execution

Metode

This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.

Bandingkan opsi sekitar

Skill terkait untuk diaudit berikutnya